/Vulnerability Library

BlueSnap Payment Gateway for WooCommerce <=3.4.0 - IPN Authorization Bypass

CVE-2026-0692
Verified

Description

BlueSnap Payment Gateway for WooCommerce <= 3.4.0 validates its unauthenticated IPN webhook using WooCommerce's client-IP geolocation, which trusts spoofed forwarding headers instead of requiring a webhook signature. Version 3.4.1 replaces the IP check with HMAC-SHA256 security headers. This detector supplies a generated, non-existent transaction ID, so the vulnerable code reaches the order lookup and returns `Order could not be found` without changing an order.

Severity

High

CVSS Score

7.5

Exploit Probability

1%

Affected Product

bluesnap-payment-gateway-for-woocommerce

Published Date

September 1, 2026

Template Author

str4k3r

CVE-2026-0692.yaml
7.5Score

CVSS Metrics

CVSS Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVE ID:
cve-2026-0692

References

https://plugins.svn.wordpress.org/bluesnap-payment-gateway-for-woocommerce/tags/3.4.0/includes/class-wc-bluesnap-ipn-webhooks.phphttps://plugins.svn.wordpress.org/bluesnap-payment-gateway-for-woocommerce/tags/3.4.1/includes/class-wc-bluesnap-ipn-webhooks.phphttps://nvd.nist.gov/vuln/detail/CVE-2026-0692

Remediation Steps

Update to the latest version of BlueSnap Payment Gateway for WooCommerce plugin.