Medium 5.4
2026-03-16< 4.2.12
CVE-2026-32587
Minimum safe version
4.2.12
Update to 4.2.12 or later to address 14 fixable vulnerabilities
CVE-2026-32587
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2024-5861
WordPress WP EasyPay Plugin <= 4.1 is vulnerable to Cross Site Scripting (XSS)
CVE-2021-4411
CVE-2021-4342
CVE-2023-1465
CVE-2022-47177
Various Affected Software (Various Versions) - Cross-Site Request Forgery Bypass
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CSRF Bypass in Multiple Plugins
WordPress WP EasyPay plugin <= 3.2.0 - Cross-Site Request Forgery (CSRF) vulnerability
WordPress WP EasyPay plugin < 4.0.2 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
WordPress WP EasyPay plugin < 4.0.2 - Sensitive Information Disclosure vulnerability