Wpeasypay
Wpeasypay WP Easypay: vulnerabilidades y CVE
Wpeasypay WP Easypay tiene 7 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses3
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-84762 | Media (5.3) | 0.35% | — | 3 sept 2026 | Unauthenticated Bypass Vulnerability in WP EasyPay <= 4.5.3 versions. |
| CVE-2026-57808 | Media (6.5) | 0.30% | — | 23 jul 2026 | Subscriber Arbitrary Content Deletion in WP EasyPay <= 4.5.0 versions. |
| CVE-2026-56024 | Media (6.5) | 0.18% | — | 18 jun 2026 | Cross-Site Request Forgery (CSRF) vulnerability in Saad Iqbal WP EasyPay allows Cross Site Request Forgery. This issue affects WP EasyPay: from n/a through 4.5.0. |
| CVE-2024-5861 | Media (6.5) | 0.40% | — | 24 jul 2024 | The WP EasyPay – Square for WordPress plugin for WordPress is vulnerable to unauthorized modification of datadue to a missing capability check on the wpep_square_disconnect() function in all versions up to, and… |
| CVE-2023-1465 | Media (6.1) | 0.46% | — | 16 ago 2023 | The WP EasyPay WordPress plugin before 4.1 does not escape some generated URLs before outputting them back in pages, leading to Reflected Cross-Site Scripting issues which could be used against high privilege users such… |
| CVE-2021-4411 | Media (4.3) | 0.40% | — | 12 jul 2023 | The WP EasyPay – Square for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.2.0. This is due to missing or incorrect nonce validation on the… |
| CVE-2022-47177 | Alta (8.8) | 0.30% | — | 25 may 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WP Easy Pay WP EasyPay – Square for WordPress plugin <= 4.1 versions. |