AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-66431

HIGH · CVSS 7.5 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The Bitcoin Lightning Payment Gateway for WooCommerce versions up to 1.0.7 are vulnerable to unauthenticated broken access control, allowing attackers to potentially exploit this flaw to gain unauthorized access to sensitive functionalities. This vulnerability poses a significant risk to e-commerce platforms utilizing this payment gateway, as it could lead to financial loss and data breaches. WooCommerce site administrators and developers should prioritize patching this issue to safeguard their systems and customer data.

CVE
CVE-2026-66431
Severity
HIGH
CVSS
7.5
EPSS
0.25%

Original NVD Description

Unauthenticated Broken Access Control in Bitcoin Lightning Payment Gateway for WooCommerce (via CLINK) <= 1.0.7 versions.