CVE-2026-13222 UNKNOWN

CVE-2026-13222

Published: 2026-06-25

Description

Our payment integration with Oppwa-based payment methods did not properly validate payment status responses. An attacker could use a successful payment status response from one payment and supply it to the system for a different payment, gaining access to multiple valid tickets with only one payment.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…