N/A
2026-02-13< 1.4.7
Payment Page | Payment Form for Stripe <= 1.4.6 - Authenticated (Author+) Stored Cross-Site Scripting via 'pricing_plan_select_text_font_family' Parameter
Minimum safe version
1.4.7
Update to 1.4.7 or later to address 4 fixable vulnerabilities
Payment Page | Payment Form for Stripe <= 1.4.6 - Authenticated (Author+) Stored Cross-Site Scripting via 'pricing_plan_select_text_font_family' Parameter
WordPress Payment Page Plugin < 1.2.9 is vulnerable to Cross Site Scripting (XSS)
WordPress Payment Page plugin <= 1.1 - Sensitive Information Disclosure vulnerability
WordPress Payment Page plugin <= 1.1 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability