Extension WordPress
Vulnérabilités Payment forms, Buy now buttons, and Invoicing System | GetPaid
Cette page rassemble les failles publiées pour Payment forms, Buy now buttons, and Invoicing System | GetPaid, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Payment forms, Buy now buttons, and Invoicing System | GetPaid
3 fiches
Payment forms, Buy now buttons, and Invoicing System | GetPaid <= 2.8.49 – Unauthenticated Information Exposure
The Payment forms, Buy now buttons, and Invoicing System | GetPaid plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.8.49. This makes it possible for unauthenticated attackers to extract sensitive…
*-2.8.49
2.8.50
08/06/2026
GetPaid <= 2.8.11 – Missing Authorization via column_subscription()
The GetPaid plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the column_subscription() function in versions up to, and including, 2.8.11. This makes it possible for authenticated attackers, with contributor-level…
*-2.8.11
2.8.12
28/08/2024
WordPress Payments Plugin | GetPaid <= 2.3.3 – Authenticated Stored Cross-Site Scripting
In the GetPaid WordPress plugin before 2.3.4, users with the contributor role and above can create a new Payment Form, however the Label and Help Text input fields were not getting sanitized properly. So it was possible to…
*-2.3.3
2.3.4
02/06/2021
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.