Known vulnerabilities in Payment Gateway for PayPal on WooCommerce
PayPal, Credit/Debit Cards, Google Pay, Apple Pay, Pay Later, Venmo, SEPA, iDEAL, Mercado Pago, Bancontact & more - by an official PayPal Partner
3Reported vulnerabilities
5.3Highest CVSS score
9.2.5Latest version
10,000+Active installs
What to do now
Update Payment Gateway for PayPal on WooCommerce to 9.2.1 or later.
3 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2026-16621 | Medium | 0.1% | 0 up to (but not including) 9.2.1 | 9.2.1 |
August 12, 2026 |
| CVE-2026-59547 | Medium | 0.3% | 9.1.4 and earlier | 9.1.5 |
July 22, 2026 |
| CVE-2025-63023 | Medium | 0.3% | 9.0.53 and earlier | 9.0.54 |
November 30, 2025 |