WordPress Plugin Vulnerabilities

WP Support Plus Responsive Ticket System <= 9.1.2 - Unauthenticated Support Ticket Access via Session Cookie Forgery

Description

The plugin does not sign or verify its guest-session cookie, allowing unauthenticated attackers to forge it and impersonate any ticket owner (identified by email address) to read, reply to, and close that person's support tickets.

Proof of Concept

Affects Plugins

References

Classification

Type
IDOR
CWE

Miscellaneous

Original Researcher
Kartik sharma
Submitter
Kartik sharma
Verified
Yes

Timeline

Publicly Published
2026-06-18 (about 1 month ago)
Added
2026-06-18 (about 1 month ago)
Last Updated
2026-06-18 (about 1 month ago)

Other