CVE-2026-81423
Accept Stripe Payments < 2.1.4 - Open Redirect via IPN Handler
CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th
The Accept Stripe Payments WordPress plugin before 2.1.4 does not validate a user-supplied URL before using it in a redirect, allowing unauthenticated attackers to redirect visitors to an arbitrary external website, which can be leveraged for phishing.
| Vendor | unknown |
| Product | accept stripe payments |
| Published | Sep 5, 2026 |
| Last Updated | Sep 6, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown accept stripe payments
Be the first to know when new medium vulnerabilities affecting unknown accept stripe payments are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / Accept Stripe Payments
0 < 2.1.4
References
Credits
Usama Arshad WPScan