← Back

Idokd

idokd

1 CVE • 1 product

Products (1)

Click to collapse
Toggle
Simple Payment
simple_payment

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Idokd
1Simple Payment
Jun 17, 2026
Jun 27, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The Simple Payment plugin for WordPress is vulnerable to Authentication Bypass in versions 1.3.6 to 2.3.8. This is due to the plugin not properly verifying a user's identity prior to logging them in through the create_us...Show more
The Simple Payment plugin for WordPress is vulnerable to Authentication Bypass in versions 1.3.6 to 2.3.8. This is due to the plugin not properly verifying a user's identity prior to logging them in through the create_user() function. This makes it possible for unauthenticated attackers to log in as administrative users.Show less