Paymendo

WordPress plugin · paymendo · WordPress.org ↗
0
Critical
0
High
2
Known total
2
Unfixed
Running Paymendo on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
MEDIUM
CVSS 6.5
Paymendo Bank Transfer <= 1.1 - Unauthenticated Blind SQLi via 'paymendo_bank_transfer_completed_payment' Parameter
CVE.org
<=1.1 unfixed CVE-2026-89304 Oct 11, 2026
MEDIUM
CVSS 6.5
Paymendo Bank Transfer <= 1.1 - Subscriber+ SQLi via 'orderBy' Parameter
CVE.org
<=1.1 unfixed CVE-2026-89305 Oct 11, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.