Known Vulnerabilities for Checkout-php by Google
Listed below are 1 of the newest known vulnerabilities associated with "Checkout-php" by "Google".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76217 json | GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() an... | Not Provided | 2026-08-19 | 2026-08-19 |
| CVE-2026-74252 json | Joomla Extension - j2commerce.com - Stored XSS in Guest checkout in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5 - J2Comme... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-73623 json | GitPython before 3.1.54 contains an incomplete denylist in unsafe_git_clone_options that omits --template, allowing attackers... | Not Provided | 2026-08-13 | 2026-08-15 |
| CVE-2026-73620 json | GitPython before 3.1.57 fails to guard git option forwarding in IndexFile.checkout() and TagReference.create(), allowing atta... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-71556 json | go-git is an extensible git implementation library written in pure Go. Prior to 5.19.2 and 6.0.0-alpha.5, worktree operations... | Not Provided | 2026-08-07 | 2026-08-07 |
| CVE-2026-71493 json | Infracost provides cloud cost intelligence for engineers, AI coding agents, and CI/CD. Prior to 0.10.45, the readFile, pathEx... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-68501 json | Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Sylius Mo... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-67359 json | Joomla Extension - j2commerce.com - Order content disclosure J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5 - An unauthentic... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-66475 json | Shop manager Cross Site Scripting (XSS) in Checkout Field Editor for WooCommerce – Checkout Manager <= 3.0.5 versions. | Not Provided | 2026-07-27 | 2026-07-27 |
| CVE-2026-66466 json | Unauthenticated Broken Access Control in StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Q... | Not Provided | 2026-08-13 | 2026-08-13 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Checkout-php | 1.3.2 | ||||
| Application | Checkout-php | 1.3.1 | ||||
| Application | Checkout-php | 1.3.0 | ||||
| Application | Checkout-php | 1.2.5a | ||||
| Application | Checkout-php | 1.2.5 | ||||
| Application | Checkout-php | 1.2.1 | ||||
| Application | Checkout-php | 1.2 | ||||
| Application | Checkout-php | 1.2 |