plugin

Woocommerce For Paygent Payment Main Vulnerabilities

1 known security issue reported for the Woocommerce For Paygent Payment Main WordPress plugin. Most recent disclosed Jan 16, 2026.

1 medium

Running Woocommerce For Paygent Payment Main on your site? Check whether your installed version is affected.

Scan your site free

PAYGENT for WooCommerce <= 2.4.6 - Missing Authorization to Unauthenticated Payment Callback Manipulation

medium

The PAYGENT for WooCommerce plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2.4.6. This is due to missing authorization checks on the paygent_check_webhook function combined with the paygent_permission_callback function unconditionally returning true on line 199. This m...

CVSS:
5.3
Affected:
up to 2.4.6
Fixed in:
2.4.7
Disclosed:
Jan 16, 2026

CVE-2025-14078 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database