Unauthenticated Cross Site Request Forgery (CSRF) in Razorpay Payment Links for WooCommerce <= 2.1.5 versions.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Update the WordPress Razorpay Payment Links for WooCommerce plugin to the latest available version (at least 2.2.0).
Workaround
No workaround given by the vendor.
References
History
Wed, 30 Sep 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated Cross Site Request Forgery (CSRF) in Razorpay Payment Links for WooCommerce <= 2.1.5 versions. | |
| Title | WordPress Razorpay Payment Links for WooCommerce plugin <= 2.1.5 - Cross Site Request Forgery (CSRF) vulnerability | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-09-30T13:27:16.449Z
Reserved: 2026-09-24T10:23:27.497Z
Link: CVE-2026-97299
No data.
Status : Received
Published: 2026-09-30T13:17:39.757
Modified: 2026-09-30T13:17:39.757
Link: CVE-2026-97299
No data.
OpenCVE Enrichment
No data.
Weaknesses