GMO PG operates a payment-processing module serving e-commerce and transaction platforms, representing a focused but supply-chain-critical product with limited disclosed vulnerability history. Observed weaknesses in this component span input-handling and authentication concerns typical of payment-processing systems; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Gmo Pg over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-0658HIGH Input validation issue in EC-CUBE Payment Module (2.12) version 3.5.23 and earlier, EC-CUBE Payment Module (2.11) version 2.3.17 and earlier, GMO-PG Payment Module (PG Multi-Paymen | Sep 7, 2018 | 7.2 | 24 | NO | NO |
CVE-2018-0657MEDIUM Cross-site scripting vulnerability in EC-CUBE Payment Module and GMO-PG Payment Module (PG Multi-Payment Service) for EC-CUBE (EC-CUBE Payment Module (2.12) version 3.5.23 and earl | Sep 7, 2018 | 4.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Gmo Pg.
Media articles that mention a CVE ID that affects a product developed by Gmo Pg — matched by CVE ID, not by vendor name.