Filtered by vendor Ithemes
Subscriptions
Filtered by product Stripe
Subscriptions
Total
2 CVE
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2022-50797 | 3 Halfdata, Ithemes, Wordpress | 3 Stripe Green Downloads, Stripe, Wordpress | 2026-07-28 | 6.4 Medium |
| Stripe Green Downloads Wordpress Plugin 2.03 contains a persistent cross-site scripting vulnerability allowing remote attackers to inject malicious scripts in button label fields. Attackers can exploit input parameters to execute arbitrary scripts, potentially leading to session hijacking and application module manipulation. | ||||
| CVE-2015-9374 | 1 Ithemes | 1 Stripe | 2024-11-21 | N/A |
| Stripe Add-on for iThemes Exchange before 1.2.0 for WordPress has XSS via add_query_arg() and remove_query_arg(). | ||||
Page 1 of 1.