CVE-2026-81648
CryptoPayment Gateway WordPress Plugin Arbitrary File Deletion and Data Exposure
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
A critical vulnerability in a WordPress payment gateway plugin allows unauthenticated users to perform administrative operations. This could lead to arbitrary file deletion, modification of payment gateway configurations, and recovery of cleartext wallet credentials, impacting system integrity and data security. The re