First published: Mon Aug 19 2024(Updated: )
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Scott Paterson Easy PayPal Buy Now Button.This issue affects Easy PayPal Buy Now Button: from n/a through 1.9.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Scott Paterson Easy PayPal & Stripe Buy Now Button | <=1.9 | |
WordPress Easy PayPal & Stripe Buy Now Button | <=1.9 |
Update to 1.9.1 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43236 is classified as a medium severity vulnerability due to its potential for exploitation via open redirection.
To fix CVE-2024-43236, update the Easy PayPal Buy Now Button plugin to version 1.10 or later.
CVE-2024-43236 affects users of the Scott Paterson Easy PayPal Buy Now Button and WordPress Easy PayPal & Stripe Buy Now Button plugins up to version 1.9.
An Open Redirect vulnerability, such as CVE-2024-43236, allows attackers to redirect users to untrusted external sites, potentially leading to phishing attacks.
Exploitation of CVE-2024-43236 could lead to loss of user trust, phishing attacks, or malicious content being served from an untrusted site.