Known vulnerabilities in Payment Plugins for PayPal WooCommerce
Developed exclusively between Payment Plugins and PayPal, PayPal for WooCommerce integrates with PayPal's newest API's.
2Reported vulnerabilities
7.5Highest CVSS score
2.0.24Latest version
80,000+Active installs
What to do now
Update Payment Plugins for PayPal WooCommerce to 2.0.20 or later.
2 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2026-13399 | High | 0.3% | 0 up to (but not including) 2.0.20 | 2.0.20 |
August 6, 2026 |
| CVE-2026-39643 | Medium | 0.2% | 2.0.13 and earlier | 2.0.14 |
February 14, 2026 |