CVE-2026-5050
Last modified
CVE-2026-5050 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. The Payment Gateway for Redsys & WooCommerce Lite plugin for WordPress is vulnerable to Improper Verification of Cryptographic Signature in versions up to, and including, 7.0.0 due to successful_request() handlers calculating a local signature but not validating Ds_Signature from the request before accepting payment status across the Redsys, Bizum, and Google Pay gateway flows. This makes it possible for unauthenticated attackers to forge payment callback data and mark pending orders as paid when they know a valid order key and order amount, potentially allowing checkout completion and product or service fulfillment without a successful payment.. EPSS estimates a 0.21% chance of exploitation in the next 30 days.
Description
The Payment Gateway for Redsys & WooCommerce Lite plugin for WordPress is vulnerable to Improper Verification of Cryptographic Signature in versions up to, and including, 7.0.0 due to successful_request() handlers calculating a local signature but not validating Ds_Signature from the request before accepting payment status across the Redsys, Bizum, and Google Pay gateway flows. This makes it possible for unauthenticated attackers to forge payment callback data and mark pending orders as paid when they know a valid order key and order amount, potentially allowing checkout completion and product or service fulfillment without a successful payment.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-5050?
How severe is CVE-2026-5050?
How do I fix CVE-2026-5050?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-50494Heap-based buffer overflow in Windows NTFS allows an authori…7.8
- CVE-2026-50495Improper access control in Microsoft Windows DNS allows an a…5.5
- CVE-2026-50496Out-of-bounds read in Windows Network Policy Server SNMP all…7.5
- CVE-2026-50497Off-by-one error in Windows Remote Desktop Protocol allows a…7.5
- CVE-2026-50498Windows Universal Disk Format File System Driver (UDFS) Elev…7.8
- CVE-2026-50499Heap-based buffer overflow in Windows Print Spooler Componen…7.8
- CVE-2026-50500Use after free in Windows Netlogon allows an authorized atta…8.8
- CVE-2026-50501Stack-based buffer overflow in Windows Resilient File System…7.8
- CVE-2026-50502Insufficient granularity of access control in Windows Event …8.8
- CVE-2026-50503Concurrent execution using shared resource with improper syn…7
- CVE-2026-50504Buffer over-read in Remote Desktop Client allows an unauthor…7.5
- CVE-2026-50505Use after free in Windows Message Queuing allows an authoriz…8.8
Are you affected by CVE-2026-5050?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
