PatchSiren

yoomoney CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM yoomoney CVE published 2026-07-27

CVE-2026-65434

A Subscriber Sensitive Data Exposure vulnerability exists in ЮKassa для WooCommerce plugin versions up to 2.16.1. The vulnerability has a CVSS score of 6.5 and a severity of MEDIUM. This type of vulnerability can lead to unauthorized access to sensitive subscriber data. Users of affected versions should be aware of this vulnerability and take necessary actions to mitigate it. The CVE record was published [truncated]