Input validation vulnerability in WooCommerce Stripe Payment Gateway 7.6.1

The WooCommerce Stripe Payment Gateway plugin for WordPress is vulnerable to an attack known as Cross-Site Request Forgery. This plugin, found in all versions before 7.6.1, is vulnerable due to incorrect or missing security measures called nonces. This means that an unauthenticated attacker could change the stripe connection by tricking a site administrator into clicking on a link or performing another action.

Detected in:

WooCommerce Stripe Payment Gateway fixed vulnerable versions: >= * < 7.6.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.