Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
5.3
CVE-2026-28180
- EPSS 0.23%
- Veröffentlicht 06.08.2026 14:27:16
- Zuletzt bearbeitet 12.08.2026 20:58:37
Unauthenticated Insecure Direct Object References (IDOR) in Mercado Pago payments for WooCommerce <= 8.9.0 versions.
5.3
CVE-2026-3208
- EPSS 0.5%
- Veröffentlicht 06.05.2026 04:16:06
- Zuletzt bearbeitet 25.07.2026 11:10:00
The Mercado Pago payments for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'mp_pix_image' WooCommerce API endpoint in all versions up to, and including, 8.7.11. This makes it p...
8.8
CVE-2022-45068
- EPSS 0.29%
- Veröffentlicht 01.03.2023 14:15:16
- Zuletzt bearbeitet 28.04.2026 19:18:56
Cross-Site Request Forgery (CSRF) vulnerability in Mercado Pago Mercado Pago payments for WooCommerce plugin <= 6.3.1.
1