CVE-2025-53309: WordPress Accept Stripe Payments Using Contact Form 7 plugin <= 3.0 - Sensitive Data Exposure Vulnerability
Insertion of Sensitive Information Into Sent Data vulnerability in ZealousWeb Accept Stripe Payments Using Contact Form 7 accept-stripe-payments-using-contact-form-7 allows Retrieve Embedded Sensitive Data.This issue affects Accept Stripe Payments Using Contact Form 7: from n/a through <= 3.0.
Other sources
Insertion of Sensitive Information Into Sent Data vulnerability in ZealousWeb Accept Stripe Payments Using Contact Form 7 allows Retrieve Embedded Sensitive Data. This issue affects Accept Stripe Payments Using Contact Form 7: from n/a through 3.0.
— NVD
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53309?
CVE-2025-53309 is classified as a vulnerability that allows the retrieval of embedded sensitive data.
How do I fix CVE-2025-53309?
To fix CVE-2025-53309, update the ZealousWeb Accept Stripe Payments Using Contact Form 7 plugin to the latest version.
What versions of Accept Stripe Payments Using Contact Form 7 are affected by CVE-2025-53309?
CVE-2025-53309 affects ZealousWeb Accept Stripe Payments Using Contact Form 7 versions up to 3.0.
What type of vulnerable data does CVE-2025-53309 expose?
CVE-2025-53309 can expose sensitive information embedded in sent data.
Is CVE-2025-53309 specific to any platform?
Yes, CVE-2025-53309 specifically affects WordPress installations using the Accept Stripe Payments Using Contact Form 7 plugin.