Accept Stripe Payments vulnerability

The Accept Stripe Payments WordPress plugin before 2.1.4 does not validate a user-supplied URL before using it in a redirect, allowing unauthenticated attackers to redirect visitors to an arbitrary external website, which can be leveraged for phishing.

Published 5 Sep 2026Updated 5 Sep 20261 sources
CVSS 0.0

Source timeline

CVE record published by NVDView source ↗