CyberRota Analysis
AI-GeneratedXendit Payment versions up to 7.1.0 are susceptible to unauthenticated broken access control vulnerabilities, allowing attackers to exploit the system without authentication. This can lead to unauthorized access to sensitive payment functionalities, potentially resulting in financial loss and data breaches. Organizations using affected versions should prioritize immediate remediation to safeguard their payment processing systems.
CVE
CVE-2026-66473
Severity
HIGH
CVSS
7.5
EPSS
0.20%
Original NVD Description
Unauthenticated Broken Access Control in Xendit Payment <= 7.1.0 versions.