PayPal plugin for Sylius.
98%
Total Score
95
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-30152 sylius/paypal-plugin is vulnerable to External Control of Assumed-Immutable Web Parameter in versions 0.0.0 - 1.6.2, 1.7.0 - 1.7.2 and 2.0.0 - 2.0.2. | 0.0.0 - 1.6.21.7.0 - 1.7.22.0.0 - 2.0.2 | Medium |
CVE-2025-29788 sylius/paypal-plugin is vulnerable to External Control of Assumed-Immutable Web Parameter in versions 0.0.0 - 1.6.1, 1.7.0 - 1.7.1 and 2.0.0 - 2.0.1. | 0.0.0 - 1.6.11.7.0 - 1.7.12.0.0 - 2.0.1 | Medium |
CVE-2021-41120 sylius/paypal-plugin is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 1.0.0 - 1.2.4 and 1.3.0 - 1.3.1. | 1.0.0 - 1.2.41.3.0 - 1.3.1 | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
sylius/sylius Version ^2.0.1 | — | — |
symfony/mailer Version ^6.4 || ^7.1 | — | — |
psr/http-client Version ^1.0 | — | — |
sylius/telemetry Version ^1.0 | — | — |
php-http/discovery Version ^1.20 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant