Логотип exploitDog
bind:CVE-2025-12752
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-12752

Количество 2

Количество 2

nvd логотип

CVE-2025-12752

3 месяца назад

The Subscriptions & Memberships for PayPal plugin for WordPress is vulnerable to fake payment creation in all versions up to, and including, 1.1.7. This is due to the plugin not properly verifying the authenticity of an IPN request. This makes it possible for unauthenticated attackers to create fake payment entries that have not actually occurred.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-hgcx-x66q-2c6r

3 месяца назад

The Subscriptions & Memberships for PayPal plugin for WordPress is vulnerable to fake payment creation in all versions up to, and including, 1.1.7. This is due to the plugin not properly verifying the authenticity of an IPN request. This makes it possible for unauthenticated attackers to create fake payment entries that have not actually occurred.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-12752

The Subscriptions & Memberships for PayPal plugin for WordPress is vulnerable to fake payment creation in all versions up to, and including, 1.1.7. This is due to the plugin not properly verifying the authenticity of an IPN request. This makes it possible for unauthenticated attackers to create fake payment entries that have not actually occurred.

CVSS3: 5.3
0%
Низкий
3 месяца назад
github логотип
GHSA-hgcx-x66q-2c6r

The Subscriptions & Memberships for PayPal plugin for WordPress is vulnerable to fake payment creation in all versions up to, and including, 1.1.7. This is due to the plugin not properly verifying the authenticity of an IPN request. This makes it possible for unauthenticated attackers to create fake payment entries that have not actually occurred.

CVSS3: 5.3
0%
Низкий
3 месяца назад

Уязвимостей на страницу