Security Advisory
CVE-2018-19187
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via an arbitrary parameter name or value that is mishandled in a success.php echo statement.