plugin

Slek Gateway For Woocommerce Vulnerabilities

1 known security issue reported for the Slek Gateway For Woocommerce WordPress plugin. Most recent disclosed May 11, 2026.

1 medium

Running Slek Gateway For Woocommerce on your site? Check whether your installed version is affected.

Scan your site free

Slek Gateway for WooCommerce <= 1.0 - Unauthenticated Insufficiently Protected Credentials via Payment Redirect Form Hidden Fields

medium

The Slek Gateway for WooCommerce plugin for WordPress is vulnerable to Information Exposure in version 1.0. This is due to the wsb_handle_slek_payment_redirect() function placing the merchant's slek_key and slek_secret API credentials directly into a client-side HTML form, and additionally embedding the slek_secret as...

CVSS:
5.3
Affected:
up to 1.0
Fix:
No patched version reported
Disclosed:
May 11, 2026

CVE-2026-7626 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database