CVE-2026-84762: WordPress WP EasyPay plugin <= 4.5.3 - Bypass Vulnerability vulnerability
Unauthenticated Bypass Vulnerability in WP EasyPay <= 4.5.3 versions.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress WP EasyPay Pluginto a version that resolves this vulnerability.Fixed in 4.5.4
Event History
Frequently Asked Questions
Who can exploit this issue?
The vulnerability is unauthenticated, so an attacker does not need a WordPress account or prior privileges to attempt exploitation. The provided CVSS vector indicates it can be reached over the network with low attack complexity and no user interaction.
What is the likely security impact?
The available severity data rates the issue as medium with a CVSS score of 5.3. The stated impact is integrity-only; no confidentiality or availability impact is listed.
Which installations are affected?
WP EasyPay versions 4.5.3 and earlier are identified as affected. The supplied information does not state whether a particular configuration or feature must be enabled.