Known Vulnerabilities for Stripe by Ithemes
Listed below are 1 of the newest known vulnerabilities associated with "Stripe" by "Ithemes".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-105850 json | Payload is a free and open source headless content management system. In @payloadcms/plugin-ecommerce versions before 3.90.0 ... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105848 json | Payload is a free and open source headless content management system. In @payloadcms/plugin-stripe versions before 3.90.0 and... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-103266 json | Ghost versions 5.2.0 through versions prior to 6.62.0 allow a remote attacker, without authentication, to abuse the Stripe Ch... | Not Provided | 2026-10-01 | 2026-10-06 |
| CVE-2026-100616 json | capgo.app is an over-the-air update platform for Capacitor apps. In all versions prior to a fix, the row-level security UPDAT... | Not Provided | 2026-09-26 | 2026-10-05 |
| CVE-2026-98083 json | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix transaction use-after-free in raid stripe ins... | Not Provided | 2026-09-25 | 2026-10-03 |
| CVE-2026-97661 json | The Business Essentials for Contact Form 7 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'gateway' Fo... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-94432 json | The Appointment Booking Plugin – LatePoint | Calendar & Scheduling for WordPress plugin for WordPress is vulnerable to Inse... | Not Provided | 2026-10-02 | 2026-10-03 |
| CVE-2026-91019 json | The Event Booking Manager for WooCommerce WordPress plugin before 5.6.0 does not restrict who can view its stored payment ga... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-90987 json | The Easy PayPal & Stripe Buy Now Button WordPress plugin before 2.0.6 does not derive the payment amount on the server, takin... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-90896 json | Missing Authentication for Critical Function (CWE-306) in the checkout session lookup handler (src/app/api/stripe/checkout_se... | Not Provided | 2026-09-14 | 2026-09-15 |