WordPress Accept Stripe Payments Using Contact Form 7 plugin <= 3.1 - Reflected Cross-Site Scripting via failure_message vulnerability

Don't mute a vulnerability until you've confirmed your current version has a fix, or the issue doesn't affect your site.

Type:
Cross Site Scripting (XSS)
Score:
7.1
Fixed in Version 3.2

Timeline

Publicly Published
2025-12-12
Created
2025-12-11

WordPress Accept Stripe Payments Using Contact Form 7 plugin <= 3.0 - Sensitive Data Exposure Vulnerability

Don't mute a vulnerability until you've confirmed your current version has a fix, or the issue doesn't affect your site.

Type:
Sensitive Data Exposure
Score:
5.3
Fixed in Version 3.1

Timeline

Publicly Published
2025-06-27
Created
2025-06-27