Vulnerability Details: Cross-Site Request Forgery (CSRF)/Cross-Site Scripting (XSS) in WP Ultra simple Paypal Cart
A report by JPCERT/CC credits the discovery of a cross-site request forgery (CSRF) vulnerability in WP Ultra simple Paypal Cart to Mike Castro Demaria. The changelog for the version it appears that should be fixed in indicates something a bit different:
…