Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-6858 2 Transbank, Wordpress 2 Transbank Webpay Rest, Wordpress 2026-06-24 7.1 High
The Transbank Webpay WordPress plugin before 1.14.0 does not sanitize and escape logs to be displayed, allowing unauthenticated users to perform Stored XSS attacks against logged in administrator
CVE-2023-27610 1 Transbank 1 Transbank Webpay Rest 2025-01-10 5.5 Medium
Auth. (admin+) SQL Injection (SQLi) vulnerability in TransbankDevelopers Transbank Webpay REST plugin <= 1.6.6 versions.