Sensitive Data Exposure in Conekta Payment Gateway by Conekta
CVE-2026-49066
7.5HIGH
What is CVE-2026-49066?
The Conekta Payment Gateway plugin has a vulnerability that allows for the exposure of sensitive information due to unauthenticated access in versions 6.0.0 and below. This could permit unauthorized individuals to retrieve confidential data, potentially putting user information at risk.
Affected Version(s)
Conekta Payment Gateway <= 6.0.0