← العودة للجدول
CVE-2026-9284
CVE-2026-9284 - WooCommerce PayPal Payments
📅 2026-05-23 04:27:17
🔴 Critical 🔥 No MITRE CVE High Exploit Web 🎯 EPSS 0.06%

📋 الوصف الكامل

CVE ID :CVE-2026-9284 Published : May 23, 2026, 4:27 a.m. | 2 days, 9 hours ago Description :The WooCommerce PayPal Payments plugin for WordPress is vulnerable to unauthorized order manipulation and information disclosure due to missing authorization checks on the `ppc-create-order` and `ppc-get-order` WC-AJAX endpoints in all versions up to, and including, 4.0.1. The `ppc-create-or

💻 الأنظمة المتأثرة

WordPress 6.5.x

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-9284

📡 المصدر

MITRE CVE High

✅ الحلول والتخفيف

Update to v4.0.1

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←