Impact
The Integrated WooCommerce Payments plugin for WordPress contains a missing capability check in the save_upe_appearance_ajax function, allowing any user to send a request to this endpoint and alter the plugin’s configuration. This flaw permits an attacker to change payment gateway options or other settings, potentially redirecting funds, disabling essential payment features, and compromising the integrity of the site’s checkout flow.
Affected Systems
All WordPress installations that utilize the WooPayments Integrated WooCommerce Payments plugin with a version equal to or older than 10.5.1 are vulnerable. The issue exists in every copy of the plugin containing the save_upe_appearance_ajax routine.
Risk and Exploitability
The CVSS score of 6.5 indicates medium severity. No EPSS score is available, and the vulnerability is not listed in CISA’s KEV catalog. The likely attack vector is an unauthenticated AJAX request to the save_upe_appearance_ajax endpoint; based on the description, it is inferred that no prior site compromise is required to exploit the flaw.
OpenCVE Enrichment