WP EasyPay – Square for WordPress

WP EasyPay is a WordPress plugin that simplifies the process of accepting Square payments on a website. The plugin allows for simple and donation payments, as well as fixed and custom payment amounts. It also offers sandbox support for developer testing and the ability to display payment forms using Gutenberg block support or in a modal box. The Square transaction fee is 2.75% per in-person transaction and 2.9% + $.30 for online transactions, with varying rates for different countries. Currently, Square card payment API support is only available in the US, Canada, Australia, Japan, and the UK.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in WP EasyPay – Square for WordPress 4.2.3

    Fixed

    The WP EasyPay - Square for WordPress plugin has a security issue where anyone can change the data without permission. This happens because the wpep_square_disconnect() function does not have a check...

    Read More
  • Input validation vulnerability in WP EasyPay – Square for WordPress 3.2.0

    Fixed

    The WP EasyPay – Square for WordPress plugin for WordPress has a security vulnerability in versions 3.2.0 and earlier. This means that people who are not logged into the system could send a special...

    Read More
  • Input validation vulnerability in Freemius SDK 2.5.9 (1072 components affected)

    Fixed

    The Freemius SDK for WordPress is vulnerable to an attack known as Reflected Cross-Site Scripting. This attack is possible because of insufficient security measures in versions of the Freemius SDK up ...

    Read More
  • Input validation vulnerability in WP EasyPay – Square for WordPress 4.0.4

    Fixed

    The WP EasyPay plugin for WordPress has a security vulnerability that allows unauthenticated attackers to inject harmful code into pages that can be executed if a user clicks on a link. This vulnerabi...

    Read More
  • Input validation vulnerability in WP EasyPay – Square for WordPress 4.0.4

    Fixed

    The WP EasyPay plugin for WordPress is not secure in versions 4.0.4 and below. This means that someone who is not logged in could use a special link to change the settings of the plugin. To protect ag...

    Read More
  • Input validation vulnerability in 68 different plugins

    Fixed

    Around 70 different plugins and themes had a security issue that could let someone else do something on the website without permission. The problem was that the system that was meant to stop this fro...

    Read More
  • Access violation vulnerability in Freemius SDK (620 components affected)

    Fixed

    Freemius, a software development kit used by hundreds of WordPress plugin and theme developers, had a security vulnerability in its older versions (up to and including 2.4.2). This vulnerability could...

    Read More