Yaad Sarig Payment Gateway For WC
Yaad Sarig Payment Gateway For WC has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2024 and 2025; all 2 are fixed as of September 2026. Their average CVSS score is 5.3, and the most serious one scores 5.4 out of 10.
The most common weakness is Missing Authorization, behind 2 of the records (100%).
Every one of the 2 issues recorded for Yaad Sarig Payment Gateway For WC has a vendor fix available, so running the current release closes all known holes.
2 independent researchers contributed these findings, one record each. Yaad Sarig Payment Gateway For WC is installed on roughly 2,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.1.
CVE-2024-10665Yaad Sarig Payment Gateway For WC <= 2.2.4 - Missing Authorization to Authenticated (Subscriber+) Log Read/Deletion
Read the full analysisVulnerability Records

Yaad Sarig Payment Gateway For WC
Author
yaadsarig
Allows receiving payments via Hyp Payments ( YaadPay ) תוסף סליקה לווקומרס – Hyp Payments יכולות התוסף : חיבור מלא למערכת הסחר WooCommerce תמיכה בדף תשלום במצב של iFRAME OR reDIRECT שליטה בתבנית דף התשלום ובחירה מתוך 15 תבניות – תבניות דף תשלום תמיכה מלאה במודול החשבוניות של חברת יעד שריג כולל פירוט של מוצרים וצפייה במסמך מתוך מערכת הזמנות של האתר אפשרות לחיוב דחוי ,שינוי סכום הזמנה מתוך מערכת הזמנות של האתר (מחייב הרשאה לחיוב ללא cvv מחברת האשראי ) אפשרות להחזר חלקי או מלא של התשלום מתוך מערכת הזמנות של האתר (מחייב הרשאה לזיכוי ללא cvv מחברת האשראי ) אפשרות לתשלומים ומדרגות תשלומים לפי גובה עגלת הקניות תמיכה במטבעות : שקל ֿ,דולר ,יורו ,פאונד תמיכה בשפות חיבור מלא לתוסף WPML המאפשר בחירה שונה של שפת דף תשלום ,מטבע , מסוף , שפת חשבונית, אחוז מעמ בכל שפה באתר
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C