CVE-2026-89050

The Quads Ads Manager for Google AdSense WordPress plugin before 3.0.5 does not verify payment completion with the configured payment gateway before marking an ad-selling order as paid, allowing users who can place an order to obtain a paid ad placement without payment.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-13 21:17

Updated : 2026-09-14 21:10


NVD link : CVE-2026-89050

Mitre link : CVE-2026-89050

CVE.ORG link : CVE-2026-89050


JSON object : View

Products Affected

No product.

CWE
CWE-345

Insufficient Verification of Data Authenticity