Known Vulnerabilities for Merchant Sdk by Paypal
Listed below are 1 of the newest known vulnerabilities associated with "Merchant Sdk" by "Paypal".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-92400 json | The Payment Gateway for PayPal on WooCommerce WordPress plugin before 9.2.1 does not verify that an incoming payment notifica... | Not Provided | 2026-09-21 | 2026-09-21 |
| CVE-2026-85520 json | Google Merchant Center Feed (gmfeed) module for PrestaShop is vulnerable to unauthenticated arbitrary file write in the feed.... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-82215 json | The Payment Gateway PayPay for WooCommerce WordPress plugin from 0.5 to 0.9.3 does not verify the authenticity of the payment... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-77999 json | Joomla Extension - j2commerce.com - Unauthenticated PayPal callback forgery leading to order confirmation fraud in J2Store 1.... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-77765 json | The Better Payment WordPress plugin before 2.3.4 does not validate the submitted payment amount server-side against the merc... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-76842 json | The Mercado Pago Node.js SDK interpolates caller-supplied identifiers into API request paths without percent-encoding them, s... | Not Provided | 2026-08-24 | 2026-08-29 |
| CVE-2026-71809 json | Authentication Bypass via Hardcoded Master Verification Code vulnerability in Siam Ordering (siam-server) 1.0.0 allows remote... | Not Provided | 2026-09-09 | 2026-09-14 |
| CVE-2026-19778 json | The WPMR Google Feed Manager for WooCommerce – Sell on Google Merchant Center & Shopping plugin for WordPress is vulnerable... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-18346 json | The TikTok plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.4.1. This is du... | Not Provided | 2026-09-19 | 2026-09-19 |
| CVE-2026-17012 json | The Accept PayPal & Stripe with Subscriptions for WooCommerce WordPress plugin through 3.1.0 does not verify that the PayPal ... | Not Provided | 2026-08-10 | 2026-08-11 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Paypal | Merchant Sdk | - |