[SafePal Order Tracking Plugin Vulnerability Leads to Data Breach of Approximately 39,798 Users]
The SafePal order tracking plugin contained a security vulnerability, resulting in unauthorized access to the information of approximately 39,798 customers who placed orders between March 2, 2025, and April 11, 2026. The leaked information includes names, email addresses, shipping addresses, phone numbers, and purchase details. It does not involve mnemonic phrases, private keys, wallet passwords, bank card information, or government-issued ID numbers. SafePal has fixed the vulnerability and notified affected users, while also launching a query page for users to verify their status.