📦

merchant-sdk-php

Vendor: paypal

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 18 Total Indexed
Avg. EPSS 1.24% Exploit Prob.
Latest CVE CVE-2017-6099 Feb 24

Security Vulnerability Index

Page 1 / 2
6.1 CVSS

Cross-site scripting (XSS) vulnerability in GetAuthDetails.html.php in PayPal PHP Merchant SDK (aka merchant-sdk-php) 3.9.1 allows remote attackers to inject arbitrary web script or HTML via the token parameter.

EPSS: 1.24%