VYPR

Payment Gateway for PayPal on WooCommerce

by WordPress

CVEs (3)

  • CVE-2026-16621MedAug 12, 2026
    risk 0.34cvss 5.3epss 0.00

    The Payment Gateway for PayPal on WooCommerce WordPress plugin before 9.2.1 does not verify that payment actually succeeded before completing an order in its PayPal return handler: it reads attacker-controlled parameters, performs no amount comparison and no order-ownership…

  • CVE-2025-63023MedDec 9, 2025
    risk 0.34cvss 5.3epss 0.00

    Missing Authorization vulnerability in Easy Payment Payment Gateway for PayPal on WooCommerce woo-paypal-gateway allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Payment Gateway for PayPal on WooCommerce: from n/a through <= 9.0.53.

  • CVE-2026-59547HigJul 23, 2026
    risk 0.00cvss 7.5epss 0.00

    Unauthenticated Broken Access Control in Payment Gateway for PayPal on WooCommerce <= 9.1.4 versions.