Verge3d Publishing And E Commerce

WordPress plugin · verge3d-publishing-and-e-commerce · WordPress.org ↗
0
Critical
1
High
3
Known total
2
Unfixed
Running Verge3d Publishing And E Commerce on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
HIGH
CVSS 8.8
Verge3D < 4.13.1 - Unauthenticated Stored XSS via File Storage API
CVE.org
>=0, <4.13.1 v4.13.1 CVE-2026-92994 Sep 30, 2026
MEDIUM
CVSS 5.3
Verge3D 4.1.0 - 4.13.0 - Unauthenticated Payment Bypass via v3d_payment_done
CVE.org
<=4.13.0 unfixed CVE-2026-92996 Sep 28, 2026
MEDIUM
CVSS 5.3
Verge3D <= 4.13.0 - Unauthenticated Product Download Disclosure via v3d_download_file
CVE.org
<=4.13.0 unfixed CVE-2026-92995 Sep 27, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.