Business Logic Errors (CWE-840)FREEEmail Verification Bypass / Email Squatting via Client-Side `accounts.setAccountInfo`gpk2160May 30, 2026CVSS5.3€150
Business Logic Errors (CWE-840)FREEPayment Method Validation Bypass via Order Update Flowgpk2132May 30, 2026CVSS8.9€1,880
Improper Access Control - Generic (CWE-284)FREEAdmin Panel Exposure via WAF Bypass (URL Encoding) + Broken reCAPTCHA + Internal Info Leakgpk2130May 30, 2026CVSS5.3€250