BlueSnap Payment Gateway for WooCommerce <=3.4.0 - IPN Authorization Bypass
CVE-2026-0692
Verified
Description
BlueSnap Payment Gateway for WooCommerce <= 3.4.0 validates its unauthenticated IPN webhook using WooCommerce's client-IP geolocation, which trusts spoofed forwarding headers instead of requiring a webhook signature. Version 3.4.1 replaces the IP check with HMAC-SHA256 security headers. This detector supplies a generated, non-existent transaction ID, so the vulnerable code reaches the order lookup and returns `Order could not be found` without changing an order.
Severity
High
CVSS Score
7.5
Exploit Probability
1%
Affected Product
bluesnap-payment-gateway-for-woocommerce
Published Date
September 1, 2026
Template Author
str4k3r
CVE-2026-0692.yaml
7.5Score
CVSS Metrics
CVSS Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVE ID:
cve-2026-0692
References
https://plugins.svn.wordpress.org/bluesnap-payment-gateway-for-woocommerce/tags/3.4.0/includes/class-wc-bluesnap-ipn-webhooks.phphttps://plugins.svn.wordpress.org/bluesnap-payment-gateway-for-woocommerce/tags/3.4.1/includes/class-wc-bluesnap-ipn-webhooks.phphttps://nvd.nist.gov/vuln/detail/CVE-2026-0692
Remediation Steps
Update to the latest version of BlueSnap Payment Gateway for WooCommerce plugin.