Known Vulnerabilities for Checkout-php by Google
Listed below are 1 of the newest known vulnerabilities associated with "Checkout-php" by "Google".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-103266 json | Ghost versions 5.2.0 through versions prior to 6.62.0 allow a remote attacker, without authentication, to abuse the Stripe Ch... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-101266 json | A logic flaw in the checkout flow allows users to bypass validations performed during the check-in by skipping entire check-i... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-100689 json | GitPython before 3.1.62 does not validate the `path` field read from an untrusted .gitmodules file when updating submodules. ... | Not Provided | 2026-09-26 | 2026-09-30 |
| CVE-2026-100419 json | gitoxide gix-fs before 0.23.0 contains a path validation bypass vulnerability in the worktree checkout mechanism that allows ... | Not Provided | 2026-09-25 | 2026-09-28 |
| CVE-2026-100143 json | The FluentCart A New Era of eCommerce WordPress plugin before 1.6.5 does not verify that the person placing a guest checkout... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-96838 json | Unauthenticated Cross Site Request Forgery (CSRF) in Blacklist Manager – WooCommerce Anti-Fraud, Blacklist & Checko... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-96818 json | Unauthenticated Broken Access Control in WP Express Checkout (Accept PayPal Payments) <= 2.4.9 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-94462 json | Spree is an open source e-commerce solution built with Ruby on Rails. From 5.4.0 until 5.4.4 and 5.5.4, PATCH /api/v3/store/c... | Not Provided | 2026-09-22 | 2026-09-22 |
| CVE-2026-93993 json | Mistral Vibe before 2.25.5 contains a remote code execution vulnerability in the worktree creation process that executes git ... | Not Provided | 2026-09-19 | 2026-09-21 |
| CVE-2026-93659 json | Concrete CMS Community Store before 2.7.8 renders customer-supplied order fields without HTML escaping in checkout and admin ... | Not Provided | 2026-09-18 | 2026-09-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Checkout-php | 1.3.2 | ||||
| Application | Checkout-php | 1.3.1 | ||||
| Application | Checkout-php | 1.3.0 | ||||
| Application | Checkout-php | 1.2.5a | ||||
| Application | Checkout-php | 1.2.5 | ||||
| Application | Checkout-php | 1.2.1 | ||||
| Application | Checkout-php | 1.2 | ||||
| Application | Checkout-php | 1.2 |