The Payment Gateway for Redsys & WooCommerce Lite plugin for WordPress is vulnerable to cryptographic signature forgery, allowing unauthenticated attackers to mark pending orders as paid by forging payment callback data in versions up to 7.0.0.
PoC
LDAP authentication services
wordpress
woocommerce
redsys
payment-gateway
vulnerability
2r
1t
1c
1i
updated