Known Vulnerabilities for Paypal Pro by Ithemes
Listed below are 1 of the newest known vulnerabilities associated with "Paypal Pro" by "Ithemes".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-97661 json | The Business Essentials for Contact Form 7 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'gateway' Fo... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-96818 json | Unauthenticated Broken Access Control in WP Express Checkout (Accept PayPal Payments) <= 2.4.9 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-94432 json | The Appointment Booking Plugin – LatePoint | Calendar & Scheduling for WordPress plugin for WordPress is vulnerable to Inse... | Not Provided | 2026-10-02 | 2026-10-03 |
| CVE-2026-93511 json | The Premium Packages WordPress plugin before 7.2.1 does not verify PayPal's webhook signature before processing payment and ... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-92400 json | The Payment Gateway for PayPal on WooCommerce WordPress plugin before 9.2.1 does not verify that an incoming payment notifica... | Not Provided | 2026-09-21 | 2026-09-21 |
| CVE-2026-91019 json | The Event Booking Manager for WooCommerce WordPress plugin before 5.6.0 does not restrict who can view its stored payment ga... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-90987 json | The Easy PayPal & Stripe Buy Now Button WordPress plugin before 2.0.6 does not derive the payment amount on the server, takin... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-89426 json | The Knit Pay – Cashfree, Instamojo, Razorpay, PayPal and more plugin for WordPress is vulnerable to Privilege Escalation in... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-88764 json | The Simple Membership WordPress plugin before 4.7.8 does not validate that the membership level supplied in a PayPal payment ... | Not Provided | 2026-09-13 | 2026-09-13 |
| CVE-2026-84044 json | The Restaurant Menu and Food Ordering WordPress plugin before 2.4.12 does not verify that a PayPal payment notification genui... | Not Provided | 2026-09-04 | 2026-09-04 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ithemes | Paypal Pro | 1.1.65 | |||
| Application | Ithemes | Paypal Pro | 1.1.64 | |||
| Application | Ithemes | Paypal Pro | 1.1.63 | |||
| Application | Ithemes | Paypal Pro | 1.1.62 | |||
| Application | Ithemes | Paypal Pro | 1.1.61 | |||
| Application | Ithemes | Paypal Pro | 1.1.60 | |||
| Application | Ithemes | Paypal Pro | 1.1.59 | |||
| Application | Ithemes | Paypal Pro | 1.1.58 | |||
| Application | Ithemes | Paypal Pro | 1.1.57 | |||
| Application | Ithemes | Paypal Pro | 1.1.56 | |||
| Application | Ithemes | Paypal Pro | 1.1.55 | |||
| Application | Ithemes | Paypal Pro | 1.1.54 | |||
| Application | Ithemes | Paypal Pro | 1.1.53 | |||
| Application | Ithemes | Paypal Pro | 1.1.52 | |||
| Application | Ithemes | Paypal Pro | 1.1.51 | |||
| Application | Ithemes | Paypal Pro | 1.1.50 | |||
| Application | Ithemes | Paypal Pro | 1.1.49 | |||
| Application | Ithemes | Paypal Pro | 1.1.48 | |||
| Application | Ithemes | Paypal Pro | 1.1.47 | |||
| Application | Ithemes | Paypal Pro | 1.1.46 |