CVE-2025-68015: Vollstart Event Tickets With Ticket Scanner

Critical severity, CVSS 9.0. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper Control of Generation of Code ('Code Injection') vulnerability in Vollstart Event Tickets with Ticket Scanner event-tickets-with-ticket-scanner allows Code Injection.This issue affects Event Tickets with Ticket Scanner: from n/a through <= 2.8.5.

Affected products

  • Vollstart Event Tickets With Ticket Scanner: up to and including 2.8.5

Published 2026-01-22. Last modified 2026-06-17.