VendorsVideoWhispermicropaymentsany version
Vulnerabilities

VideoWhisper MicroPayments any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2022-27629
Cross-site request forgery (CSRF) vulnerability in 'MicroPayments - Paid Author Subscriptions, Content, Downloads, Membership' versions prior to 1.9.6 allows a remote unauthenticated attacker to hijack the authentication of an administrator and perform unintended operation via unspecified vectors.
Published 2022-04-20 · Modified
8.8EPSS 0.008
CVE-2025-5937
MicroPayments – Fans Paysite: Paid Creator Subscriptions, Digital Assets, Wallet <= 3.2.0 - Cross-Site Request Forgery to Settings Reset
Published 2025-06-28 · Analyzed
4.3EPSS 0.002