A vulnerability was found in openises Tickets up to 3.44.1 and classified as problematic. This affects an unknown function of the file add.php. Such manipulation of the argument ticket_id leads to cross site scripting.
This vulnerability is traded as CVE-2026-48213. The attack may be launched remotely. There is no exploit available.
It is suggested to upgrade the affected component.