← WordPress Vulnerabilities
WordPress security by component

Sagepay Direct For Woocommerce Payment Gateway

Sagepay Direct For Woocommerce Payment Gateway adds Sage Pay Direct as a payment gateway for WooCommerce transactions.

Sagepay Direct For Woocommerce Payment Gateway (sagepay-direct-for-woocommerce-payment-gateway) is a WordPress plugin with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 02, 2014; the highest published CVSS base score is 4.3.

Plugin slug: sagepay-direct-for-woocommerce-payment-gateway

CVE-2014-4549: Sagepay Direct For Woocommerce Payment Gateway: Cross-site scripting

Sagepay Direct For Woocommerce Payment Gateway is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.

PublishedJul 02, 2014
Safe version guidanceSee mitigation notes
Published vulnerabilities for sagepay-direct-for-woocommerce-payment-gateway
Safe version
Jul 02, 2014 CVE-2014-4549
Sagepay Direct For Woocommerce Payment Gateway: Cross-site scripting
Sagepay Direct For Woocommerce Payment Gateway is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVEPending
NVD4.3