CVE-2026-4547 | mickasmt next-saas-stripe-starter 1.0.0 Checkout generate-user-stripe.ts generateUserStripe priceId logic error
A vulnerability was found in mickasmt next-saas-stripe-starter 1.0.0. It has been rated as critical. Affected is the function generateUserStripe of the file actions/generate-user-stripe.ts of the component Checkout Handler. The manipulation of the argument priceId leads to business logic errors.
This vulnerability is listed as CVE-2026-4547. The attack may be initiated remotely. There is no available exploit.