plugin

Ipaymu For Woocommerce Vulnerabilities

1 known security issue reported for the Ipaymu For Woocommerce WordPress plugin. Most recent disclosed Jan 6, 2026.

1 high

Running Ipaymu For Woocommerce on your site? Check whether your installed version is affected.

Scan your site free

iPaymu Payment Gateway for WooCommerce <= 2.0.2 - Missing Authentication to Unauthenticated Payment Bypass and Order Information Disclosure

high

The iPaymu Payment Gateway for WooCommerce plugin for WordPress is vulnerable to Missing Authentication in all versions up to, and including, 2.0.2 via the 'check_ipaymu_response' function. This is due to the plugin not validating webhook request authenticity through signature verification or origin checks. This makes...

CVSS:
8.2
Affected:
up to 2.0.2
Fixed in:
2.0.3
Disclosed:
Jan 6, 2026

CVE-2026-0656 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database