CVE-2024-47646: Tomlister Payflex Payment Gateway

Medium severity, CVSS 4.7. EPSS: 0.3% chance of exploitation in the next 30 days.

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in tomlister Payflex Payment Gateway payflex-payment-gateway.This issue affects Payflex Payment Gateway: from n/a through <= 2.6.1.

Affected products

  • Tomlister Payflex Payment Gateway: up to and including 2.6.1

Published 2024-10-05. Last modified 2026-06-17.