CVE-2026-12863: Pretix Venueless

Medium severity, CVSS 5.1. EPSS: 0.4% chance of exploitation in the next 30 days.

An unvalidated redirect was contained in Venueless' social login functionality and could be exploited for phishing using trusted domains.

Affected products

Published 2026-06-22. Last modified 2026-06-23.