CVE-2025-67969
Plain English Summary
AI-powered analysis for quick understanding
This vulnerability allows an attacker to bypass security controls and gain unauthorized access to sensitive payment information in the UPI QR Code Payment Gateway for WooCommerce. It affects versions up to 1.5.1 and can be exploited if the access settings are not properly configured.
Technical Description
Missing Authorization vulnerability in knitpay UPI QR Code Payment Gateway for WooCommerce upi-qr-code-payment-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects UPI QR Code Payment Gateway for WooCommerce: from n/a through <= 1.5.1.
CVSS Vector Analysis
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:LExploit Resources
Search for proof-of-concept code and exploit modules
Official References
Quick Information
Published
Feb 20, 2026
about 2 months ago
Last Modified
Feb 25, 2026
about 1 month ago