CVE-2026-107636 | pH7Software pH7Builder up to 18.5.0 Payment Validation item_number/cart_order_id/PayPal custom field privileges management
A vulnerability labeled as problematic has been found in pH7Software pH7Builder up to 18.5.0. This impacts an unknown function of the component Payment Validation. The manipulation of the argument item_number/cart_order_id/PayPal custom field results in improper privilege management.
This vulnerability is identified as CVE-2026-107636. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.VulDB Recent EntriesRead More