SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-66473

HIGH · CVSS 7.5 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-07-27 · Last synced 2026-08-26

CyberRota Analysis

AI-Generated

Xendit Payment versions up to 7.1.0 are susceptible to unauthenticated broken access control vulnerabilities, allowing attackers to exploit the system without authentication. This can lead to unauthorized access to sensitive payment functionalities, potentially resulting in financial loss and data breaches. Organizations using affected versions should prioritize immediate remediation to safeguard their payment processing systems.

CVE
CVE-2026-66473
Severity
HIGH
CVSS
7.5
EPSS
0.20%

Original NVD Description

Unauthenticated Broken Access Control in Xendit Payment <= 7.1.0 versions.