CVE-2026-13399
HIGH
NVD
CVSS Score
7.5
Severity
HIGH
Published
Aug 06, 2026
Vendor
unknown
Description
The Payment Plugins for PayPal WooCommerce WordPress plugin before 2.0.20 does not have proper authorization checks on a REST endpoint, allowing unauthenticated users to bypass payments