plugin

Wpformify Vulnerabilities

1 known security issue reported for the Wpformify WordPress plugin. Most recent disclosed Aug 4, 2026.

1 high

Running Wpformify on your site? Check whether your installed version is affected.

Scan your site free

WPFormify <= 1.1.1 - Missing Authorization

high

The WPFormify – Stripe Payments with Form and Checkout plugin for WordPress is vulnerable to unauthorized modification and deletion of Stripe payment credentials in all versions up to, and including, 1.1.1. This is due to missing capability checks and nonce verification on the `wpf_stripe_callback_success()` and `wpf_s...

CVSS:
8.2
Affected:
up to 1.1.1
Fixed in:
1.1.2
Disclosed:
Aug 4, 2026

CVE-2026-6627 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database