Security Advisory

CVE-2026-57536

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-25 14:08:37
Last updated 2026-06-25 15:13:30
Assigner rami.io
CVSS score 6.3
State PUBLISHED

Description

Our payment integration with Mollie did not properly validate payment status responses. An attacker could use a successful payment status response from one payment and supply it to the system for a different payment, gaining access to multiple valid tickets with only one payment.