The WP EasyPay plugin for WordPress has a security vulnerability that allows unauthenticated attackers to inject harmful code into pages that can be executed if a user clicks on a link. This vulnerability is present in all versions up to and including 4.0.4