PT-2026-4025 · Unknown · Peach Payments Gateway

Published

2026-01-22

·

Updated

2026-01-25

·

CVE-2025-67942

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Peach Payments Gateway versions n/a through 3.3.6
Description A missing authorization issue exists in the Peach Payments Gateway. The issue involves incorrectly configured access control security levels, potentially allowing unauthorized access.
Recommendations Update Peach Payments Gateway to a version later than 3.3.6.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-67942

Affected Products

Peach Payments Gateway