VYPR

Braintree For WooCommerce

by Payment Plugins

CVEs (1)

  • CVE-2025-12903HigNov 12, 2025
    risk 0.49cvss 7.5epss 0.00

    The Payment Plugins Braintree For WooCommerce plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wc-braintree/v1/3ds/vaulted_nonce REST API endpoint in all versions up to, and including, 3.2.78. This is due to the endpoint being…