CVE-2026-16037 | PayTR Payment and Electronic Money Institution PayTR Virtual Pos iFrame API up to 9.0.2 WHMCS timing discrepancy

SecurityVulns

A vulnerability described as problematic has been identified in PayTR Payment and Electronic Money Institution PayTR Virtual Pos iFrame API up to 9.0.2. This affects an unknown function of the component WHMCS Module. Executing a manipulation can lead to observable timing discrepancy.

This vulnerability is registered as CVE-2026-16037. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More