CVSS
7.5
CVSS v3.1
EPSS
0.3%
Exploit Prediction Score
Published
August 6, 2026
Exploitability
EPSS probability 0.3%
The Payment Plugins for PayPal WooCommerce WordPress plugin before 2.0.20 does not have proper authorization checks on a REST endpoint, allowing unauthenticated users to bypass payments
No package data available.
Publisher and database URLs for this record (shown for attribution; reading stays in Bugflare).