VYPR

Slek Gateway for WooCommerce

by WordPress

CVEs (1)

  • CVE-2026-7626MedMay 12, 2026
    risk 0.34cvss 5.3epss 0.00

    The Slek Gateway for WooCommerce plugin for WordPress is vulnerable to Information Exposure in version 1.0. This is due to the wsb_handle_slek_payment_redirect() function placing the merchant's slek_key and slek_secret API credentials directly into a client-side HTML form, and…