WordPress Plugin Vulnerabilities

Contact Form 7 – PayPal & Stripe Add-on < 2.5 - Open Redirect

Description

The plugin does not validate the host of a user-supplied return URL before using it as the success and cancel redirect targets of a Stripe checkout, allowing an unauthenticated attacker to redirect a victim, via a crafted link, to an arbitrary external site after the checkout flow.

Proof of Concept

Affects Plugins

References

Classification

Type
REDIRECT
OWASP top 10
CWE

Miscellaneous

Original Researcher
Pedro Antunes
Submitter
Pedro Antunes
Verified
Yes

Timeline

Publicly Published
2026-07-06 (about 21 days ago)
Added
2026-07-06 (about 20 days ago)
Last Updated
2026-07-06 (about 20 days ago)

Other