CVE-2026-4547

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
22/03/2026
Last modified:
22/03/2026

Description

A security vulnerability has been detected in mickasmt next-saas-stripe-starter 1.0.0. Affected is the function generateUserStripe of the file actions/generate-user-stripe.ts of the component Checkout Handler. The manipulation of the argument priceId leads to business logic errors. The attack may be initiated remotely.