Skip to main content

Vendor/product archive

wpeasypay / wp_easypay CVEs

Beta · best-effort

4 CVEs tagged to wpeasypay / wp_easypay0 Critical, 0 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2024-5861

Published Jul 24, 2024

The WP EasyPay – Square for WordPress plugin for WordPress is vulnerable to unauthorized modification of datadue to a missing capability check on the wpep_square_disconnect() func…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-1465

Published Aug 16, 2023

The WP EasyPay WordPress plugin before 4.1 does not escape some generated URLs before outputting them back in pages, leading to Reflected Cross-Site Scripting issues which could b…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-4411

Published Jul 12, 2023

The WP EasyPay – Square for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.2.0. This is due to missing or incorrect…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-47177

Published May 25, 2023

Cross-Site Request Forgery (CSRF) vulnerability in WP Easy Pay WP EasyPay – Square for WordPress plugin <= 4.1 versions.

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1