PayPal disclosed a data breach caused by an internal application coding error that exposed customer personal data and enabled unauthorized financial transactions. The breach scope has not been publicly quantified, but confirmed financial losses occurred, and PayPal has forced password resets for affected accounts. Organizations that process payments through PayPal integrations or hold PayPal as a vendor dependency should assess exposure and monitor for downstream fraud activity.