WordPress security by component
iPOSpays Gateways WC
iPOSpays Gateways WC (ipospays-gateways-wc) is a WordPress plugin with 2 published CVE records in this archive. The latest tracked vulnerability was published May 12, 2026; the highest published CVSS base score is 5.3.
Plugin slug:
ipospays-gateways-wcLatest vulnerability
CVE-2026-4663: iPOSpays Gateways WC: A security weakness
iPOSpays Gateways WC is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
| Safe version |
|
||
|---|---|---|---|
| May 12, 2026 |
CVE-2026-4663
iPOSpays Gateways WC: A security weakness
iPOSpays Gateways WC is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE5.3
NVDPending
|
| Apr 08, 2026 |
CVE-2026-39608
iPOSpays Gateways WC: A security weakness
iPOSpays Gateways WC is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 1.3.7.
|
See mitigation notes |
CVE5.3
NVDPending
|