Conditional Free-Access Vulnerability in mppx Payment Method by Insumermodel
CVE-2026-104891

7.5HIGH

What is CVE-2026-104891?

The mppx-condition-gate package contains a vulnerability that allows an unauthenticated attacker to gain free access to content by manipulating wallet addresses. Prior to version 3.0.0 for mppx-condition-gate and 1.0.4 for mppx-token-gate, the packages accepted client-supplied wallet addresses without proper verification, enabling unauthorized users to receive content that should require payment. This loophole allowed cached access grants to be reused within their cache lifetime. The issue has been rectified in the updated versions, ensuring that authorization checks are only granted when the payer's control over the wallet is established.

Affected Version(s)

mppx-condition-gate < b1d9935a57ba6d32da49eead1bfb459ad0cd55ab

mppx-condition-gate < 3.0.0

mppx-token-gate < 1.0.4

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.