CVE-2025-27003
Quick Paypal Payments
Minimum safe version
5.7.47
Update to 5.7.47 or later to address 20 fixable vulnerabilities
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Quick Paypal Payments 3.0 - Payment Sending Multiple Parameter XSS
WordPress Quick Paypal Payments Plugin < 5.7.22 is vulnerable to Sensitive Data Exposure
WordPress Quick Paypal Payments Plugin < 5.7.22 is vulnerable to Cross Site Request Forgery (CSRF)
WordPress Quick Paypal Payments Plugin <= 3.0 is vulnerable to Cross Site Scripting (XSS)
WordPress Quick Paypal Payments Plugin < 5.7.29 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-1554
WordPress Quick Paypal Payments Plugin <= 5.7.26.3 is vulnerable to Cross Site Scripting (XSS)
Quick Paypal Payments <= 5.7.26.3 - Authenticated (Administrator+) Stored Cross-Site Scripting
CVE-2023-23889
CVE-2023-25713
CVE-2023-25702
CVE-2023-25714
Quick Paypal Payments <= 5.7.25 - Authenticated (Administrator+) Stored Cross-Site Scripting
Quick Paypal Payments < 3.1 - Cross-Site Scripting
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Quick Paypal Payments Plugin <= 3.0 - Cross Site Scripting
WordPress Quick Paypal Payments plugin < 5.7.22 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
WordPress Quick Paypal Payments plugin < 5.7.22 - Sensitive Information Disclosure vulnerability