Idokd
Idokd Simple Payment: vulnerabilidades y CVE
Idokd Simple Payment tiene 7 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses5
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-62111 | Media (6.5) | 0.22% | — | 11 sept 2026 | Contributor Cross Site Scripting (XSS) in Simple Payment <= 2.5.4 versions. |
| CVE-2026-81292 | Alta (7.1) | 0.25% | — | 3 sept 2026 | Unauthenticated Cross Site Scripting (XSS) in Simple Payment <= 2.5.1 versions. |
| CVE-2026-81767 | Alta (7.5) | 0.35% | — | 28 ago 2026 | Unauthenticated Broken Access Control in Simple Payment <= 2.5.2 versions. |
| CVE-2025-62076 | Alta (7.1) | 0.17% | — | 6 nov 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ido Kobelkowsky Simple Payment simple-payment.This issue affects Simple Payment: from n/a through <= 2.4.6. |
| CVE-2025-62075 | Alta (7.5) | 0.34% | — | 6 nov 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Ido Kobelkowsky Simple Payment simple-payment.This issue affects Simple Payment: from n/a through… |
| CVE-2025-6688 | Crítica (9.8) | 0.50% | — | 27 jun 2025 | The Simple Payment plugin for WordPress is vulnerable to Authentication Bypass in versions 1.3.6 to 2.3.8. This is due to the plugin not properly verifying a user's identity prior to logging them in through the… |
| CVE-2024-54303 | Alta (7.1) | 0.44% | — | 13 dic 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ido Kobelkowsky Simple Payment simple-payment allows Reflected XSS.This issue affects Simple Payment: from n/a… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.