CVE-2026-59530

WordPress Stripe For WooCommerce plugin <= 4.0.7 - Broken Access Control vulnerability

Unauthenticated Broken Access Control in Stripe For WooCommerce <= 4.0.7 versions.


We have discovered 3,984 live websites that are affected by CVE-2026-59530.

Run a Free Instant Scan




Affected Software

Product  Woo Stripe Payment
Category Wordpress Plugins
Vulnerable Domains3,984 live websites (100% of Woo Stripe Payment install base)
Vulnerable Versions
  • from 0 through 4.0.7
Vulnerable Versions Count86 versions ( 100% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jul 27, 2026
  • Updated - Jul 27, 2026

Credits

  • timomangcut | Patchstack Bug Bounty Program (finder)

Website Distribution by Country

Number of websites using CVE-2026-59530
United States1,488 websites



GB527 websites
Germany371 websites
France206 websites
Italy177 websites
Australia172 websites
Spain105 websites
Cyprus93 websites
Canada89 websites
Switzerland56 websites

Website Distribution by TLD

Number of websites using CVE-2026-59530
.com2,160 websites
.co.uk337 websites
.com.au164 websites
.de156 websites
.it124 websites
.org121 websites
.fr84 websites
.net63 websites
.at51 websites
.es47 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2026-59530

Top websites that are affected by CVE-2026-59530. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.com United States**,***
******************.**.uk GB**,***
******.com United States***,***
**************.org United States***,***
**********.com United States***,***
****************.com United States***,***
*****.yt Germany***,***
******.com United States***,***
******************.com United States***,***
************.**.uk United States***,***
See full domain list

FAQ

CVE-2026-59530 is Missing Authorization in Woo Stripe Payment
A total of 3,984 websites have been identified as vulnerable to CVE-2026-59530, based on global website indexing conducted by WebTechSurvey.
The Woo Stripe Payment is affected by the CVE-2026-59530 vulnerability.
Woo Stripe Payment versions up to and including 4.0.7 are vulnerable to CVE-2026-59530.