Access Control Flaw in Plisio Accept Cryptocurrencies Payment Gateway
CVE-2026-6372
7.5HIGH
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 15 April 2026
What is CVE-2026-6372?
A missing authorization vulnerability has been identified in the Plisio Accept Cryptocurrencies payment gateway. This issue arises from incorrectly configured access control settings, which may allow unauthorized exploitation of security levels. It particularly affects versions of the product from n/a through 2.0.5, posing risks in processing transactions without appropriate verification.
Affected Version(s)
Accept Cryptocurrencies with Plisio <= 2.0.5