CVE-2025-26535: WordPress Bitcoin / AltCoin Payment Gateway for WooCommerce & Multivendor store / shop plugin <= 1.7.6 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CodeSolz Bitcoin / AltCoin Payment Gateway for WooCommerce woo-altcoin-payment-gateway allows Blind SQL Injection.This issue affects Bitcoin / AltCoin Payment Gateway for WooCommerce: from n/a through <= 1.7.6.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-26535?
CVE-2025-26535 is classified as a high severity vulnerability due to its potential for exploitation via Blind SQL Injection.
How do I fix CVE-2025-26535?
To fix CVE-2025-26535, you should update the NotFound Bitcoin / AltCoin Payment Gateway for WooCommerce to the latest version beyond 1.7.6.
What systems are affected by CVE-2025-26535?
CVE-2025-26535 affects the NotFound Bitcoin / AltCoin Payment Gateway for WooCommerce up to version 1.7.6.
What type of vulnerability is CVE-2025-26535?
CVE-2025-26535 is an SQL Injection vulnerability, specifically allowing for Blind SQL Injection.
Can CVE-2025-26535 be exploited remotely?
Yes, CVE-2025-26535 can be potentially exploited remotely due to its nature as an SQL Injection vulnerability.