CyberRota Analysis
AI-GeneratedThe WPFormify – Stripe Payments with Form and Checkout plugin for WordPress is vulnerable to unauthorized modification and deletion of Stripe payment credentials due to insufficient capability checks and nonce verification in specific functions. This flaw allows unauthenticated attackers to overwrite the site's Stripe API credentials, potentially redirecting payments to their own accounts or severing the Stripe integration entirely. WordPress site administrators using this plugin should prioritize immediate updates to mitigate the risk of financial fraud and service disruption.
Original NVD Description
The WPFormify – Stripe Payments with Form and Checkout plugin for WordPress is vulnerable to unauthorized modification and deletion of Stripe payment credentials in all versions up to, and including, 1.1.1. This is due to missing capability checks and nonce verification on the `wpf_stripe_callback_success()` and `wpf_stripe_disconnect()` functions, both hooked to `admin_init`. The `admin_init` hook fires on `admin-post.php` which is accessible without authentication. This makes it possible for unauthenticated attackers to overwrite the site's Stripe API credentials with attacker-controlled values (redirecting payments to the attacker's Stripe account) or disconnect the Stripe integration entirely by deleting the stored credentials.