Known vulnerabilities in GoCardless for WooCommerce
Extends WooCommerce with a GoCardless gateway. A GoCardless merchant account is required.
1Reported vulnerabilities
6.5Highest CVSS score
3.0.1Latest version
1,000+Active installs
What to do now
Update GoCardless for WooCommerce to 2.5.7 or later.
1 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2023-37871 | Medium | 0.6% | 2.5.6 and earlier | 2.5.7 |
July 10, 2023 |