{"cve":"CVE-2026-84091","enrichment":{"created":"2026-09-23T13:30:05.040014+00:00","updated":"2026-09-23T15:30:07.334423+00:00","vendors":[],"weaknesses":["CWE-284","CWE-287"]},"mitre":{"cpes":[],"created":"2026-09-23T12:08:59.817000+00:00","description":"The SUMIT Payment Gateway for WooCommerce WordPress plugin before 4.0.0 does not verify with the payment provider that a payment notification is genuine before marking the corresponding order as paid, allowing unauthenticated users to mark a pending order paid without completing payment.","metrics":{"cvssV2_0":{},"cvssV3_0":{},"cvssV3_1":{"score":5.3,"vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"},"cvssV4_0":{}},"mitre_repo_path":"cves/2026/84xxx/CVE-2026-84091.json","references":["https://wpscan.com/vulnerability/10c7a9bd-eac0-49eb-9238-d7c477312166/"],"title":"SUMIT Payment Gateway for WooCommerce < 4.0.0 - Unauthenticated Payment Confirmation Forgery via bit IPN","updated":"2026-09-23T12:38:20.929000+00:00","vendors":[],"weaknesses":[]},"nvd":{"cpes":[],"created":"2026-09-23T13:17:30.623000+00:00","description":"The SUMIT Payment Gateway for WooCommerce WordPress plugin before 4.0.0 does not verify with the payment provider that a payment notification is genuine before marking the corresponding order as paid, allowing unauthenticated users to mark a pending order paid without completing payment.","metrics":{"cvssV2_0":{},"cvssV3_0":{},"cvssV3_1":{"score":5.3,"vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"},"cvssV4_0":{}},"nvd_repo_path":"2026/CVE-2026-84091.json","references":["https://wpscan.com/vulnerability/10c7a9bd-eac0-49eb-9238-d7c477312166/"],"title":null,"updated":"2026-09-23T13:17:30.623000+00:00","vendors":[],"weaknesses":["CWE-287"]},"opencve":{"changes":[{"created":"2026-09-23T12:30:00+00:00","data":[{"details":{"new":"The SUMIT Payment Gateway for WooCommerce WordPress plugin before 4.0.0 does not verify with the payment provider that a payment notification is genuine before marking the corresponding order as paid, allowing unauthenticated users to mark a pending order paid without completing payment.","old":null},"type":"description"},{"details":{"new":"SUMIT Payment Gateway for WooCommerce < 4.0.0 - Unauthenticated Payment Confirmation Forgery via bit IPN","old":null},"type":"title"},{"details":{"added":["https://wpscan.com/vulnerability/10c7a9bd-eac0-49eb-9238-d7c477312166/"],"removed":[]},"type":"references"},{"details":{"added":{"cvssV3_1":{"score":5.3,"vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"}},"removed":{},"updated":{}},"type":"metrics"}],"id":"ea7e83d3-e200-4e56-98e4-8342a4892ddc"},{"created":"2026-09-23T13:30:00+00:00","data":[{"details":{"added":["CWE-287"],"removed":[]},"type":"weaknesses"},{"details":{"added":{"ssvc":{"options":{"Automatable":"yes","Exploitation":"poc","Technical Impact":"partial"},"version":"2.0.3"}},"removed":{},"updated":{}},"type":"metrics"}],"id":"3beffe40-730c-46f5-b114-b820cf4c84ea"},{"created":"2026-09-23T13:45:00+00:00","data":[{"details":{"added":["CWE-284"],"removed":[]},"type":"weaknesses"}],"id":"fc0f8d4e-f474-445b-94fc-5374c29c88a2"}],"cpes":{"data":[],"providers":[]},"created":{"data":"2026-09-23T12:08:59.817000+00:00","provider":"mitre"},"description":{"data":"The SUMIT Payment Gateway for WooCommerce WordPress plugin before 4.0.0 does not verify with the payment provider that a payment notification is genuine before marking the corresponding order as paid, allowing unauthenticated users to mark a pending order paid without completing payment.","provider":"mitre"},"metrics":{"cvssV2_0":{"data":{},"provider":null},"cvssV3_0":{"data":{},"provider":null},"cvssV3_1":{"data":{"score":5.3,"vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"},"provider":"mitre"},"cvssV4_0":{"data":{},"provider":null},"epss":{"data":{},"provider":null},"kev":{"data":{},"provider":null},"ssvc":{"data":{"options":{"Automatable":"yes","Exploitation":"poc","Technical Impact":"partial"},"version":"2.0.3"},"provider":"vulnrichment"},"threat_severity":{"data":null,"provider":null}},"references":{"data":["https://wpscan.com/vulnerability/10c7a9bd-eac0-49eb-9238-d7c477312166/"],"providers":["mitre","nvd"]},"title":{"data":"SUMIT Payment Gateway for WooCommerce < 4.0.0 - Unauthenticated Payment Confirmation Forgery via bit IPN","provider":"mitre"},"updated":{"data":"2026-09-23T13:30:05.040020+00:00","provider":"enrichment"},"vendors":{"data":[],"providers":[]},"weaknesses":{"data":["CWE-284","CWE-287"],"providers":["nvd","vulnrichment","enrichment"]}},"vulnrichment":{"cpes":[],"created":"2026-09-23T12:08:59.817000+00:00","description":"The SUMIT Payment Gateway for WooCommerce WordPress plugin before 4.0.0 does not verify with the payment provider that a payment notification is genuine before marking the corresponding order as paid, allowing unauthenticated users to mark a pending order paid without completing payment.","metrics":{"cvssV2_0":{},"cvssV3_0":{},"cvssV3_1":{},"cvssV4_0":{},"kev":{},"ssvc":{"options":{"Automatable":"yes","Exploitation":"poc","Technical Impact":"partial"},"version":"2.0.3"}},"references":[],"title":"SUMIT Payment Gateway for WooCommerce < 4.0.0 - Unauthenticated Payment Confirmation Forgery via bit IPN","updated":"2026-09-23T12:36:29.752000+00:00","vendors":[],"vulnrichment_repo_path":"2026/84xxx/CVE-2026-84091.json","weaknesses":["CWE-287"]}}