Input validation vulnerability in Easy PayPal Buy Now Button 1.7.3

The Easy PayPal Buy Now Button plugin for WordPress is a security risk for websites that use it. Versions up to and including 1.7.2 have a vulnerability that allows attackers to inject malicious JavaScript onto the website. This can happen if the website administrator is tricked into clicking a link. The malicious code will execute whenever someone visits the settings page of the plugin. To prevent this, website owners should ensure they have the latest version of the plugin installed.

Detected in:

Easy PayPal & Stripe Buy Now Button fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.