VYPR

WooCommerce Stripe Payment Gateway

by WordPress

CVEs (3)

  • CVE-2023-35049HigJun 19, 2024
    risk 0.49cvss 7.5epss 0.01

    Missing Authorization vulnerability in WooCommerce WooCommerce Stripe Payment Gateway.This issue affects WooCommerce Stripe Payment Gateway: from n/a through 7.4.0.

  • CVE-2026-45217MedMay 25, 2026
    risk 0.42cvss 6.5epss 0.00

    Authentication Bypass Using an Alternate Path or Channel vulnerability in ThemeHigh Stripe Payment Gateway for WooCommerce allows Password Recovery Exploitation. This issue affects Stripe Payment Gateway for WooCommerce: from n/a through 5.0.7.

  • CVE-2026-2381MedJun 16, 2026
    risk 0.35cvss 6.5epss 0.00

    The WooCommerce Stripe Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `ajax_pay_for_order()` function in all versions up to, and including, 10.7.0 This is due to a missing order ownership or…