Vulnerabilities / Braintree for WooCommerce Payment Gateway
Braintree for WooCommerce Payment Gateway vulnerabilities
Advisories WPSec published for PayPal Enterprise Payments (formerly Braintree) for WooCommerce. Other sources may list more. Its attack surface: Braintree for WooCommerce Payment Gateway on WPSec AttackSurface.
| Published | ID | Vulnerability | Severity | Fixed in |
|---|---|---|---|---|
| 2026-10-10 | WPSEC-2026-0705 | Braintree for WooCommerce Payment Gateway <= 3.12.0 - Unauthenticated 3D Secure and Card Security Code Verification Bypass via Client-Controlled Checkout Fields | Low 3.7 | 3.12.1 |
| 2026-10-10 | WPSEC-2026-0704 | Braintree for WooCommerce Payment Gateway <= 3.12.0 - Unauthenticated Payment Verification Bypass via Unvalidated Payment Method Nonce Type | Low 3.7 | 3.12.1 |
License: CC BY 4.0