The Quick Paypal Payments plugin for WordPress is vulnerable to a type of cyber attack called Cross-Site Scripting. This affects versions of the plugin before 3.1. Attackers can use this vulnerability to inject malicious web scripts into a victim’s browser. This can allow attackers to access sensitive information or take control of the victim’s device. To protect against this vulnerability, users should upgrade to version 3.1 or later.