← WordPress Vulnerabilities
WordPress security by component

Custom Payment Gateways for WooCommerce

Custom Payment Gateways for WooCommerce is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 01, 2026; the highest published CVSS base score is 7.2.

Plugin slug: custom-payment-gateways-woocommerce

CVE-2026-7517: Custom Payment Gateways for WooCommerce: Cross-site scripting

Custom Payment Gateways for WooCommerce is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The published affected range is <= 2.1.0.

PublishedJul 01, 2026
Safe version guidanceSee mitigation notes
Published vulnerabilities for custom-payment-gateways-woocommerce
Safe version
Jul 01, 2026 CVE-2026-7517
Custom Payment Gateways for WooCommerce: Cross-site scripting
Custom Payment Gateways for WooCommerce is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The published affected range is <= 2.1.0.
See mitigation notes
CVE7.2
NVDPending