---
id: CVE-2022-4997
title: >-
  The jet-form-builder-stripe-gateway WordPress plugin before 1.1.0 does not
  sanitise and escape a payment token before using it in a SQL statement,
  allowing unauthenticated users to extract arbitrary data from the database,
  including pass…
summary: >-
  The jet-form-builder-stripe-gateway WordPress plugin before 1.1.0 does not
  sanitise and escape a payment token before using it in a SQL statement,
  allowing unauthenticated users to extract arbitrary data from the database,
  including pass…
severity: high
cvss: 8.6
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N'
cwe:
  - CWE-89
product: jet-form-builder-stripe-gateway
affected:
  - jet-form-builder-stripe-gateway < 1.1.0
published: '2026-09-23'
updated: '2026-09-23'
sourceUpdated: '2026-09-23T18:13:31.210'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2022-4997'
references:
  - url: 'https://wpscan.com/vulnerability/368c38af-66c3-4500-ad50-87ada3abecd1/'
    label: contact@wpscan.com
tags:
  - nvd
  - cve.org
epss: 0.00235
epssPercentile: 0.14799
ssvc:
  exploitation: none
  automatable: 'yes'
  technicalImpact: partial
  timestamp: '2026-09-23T10:44:01.446471Z'
ingestedAt: '2026-09-23T06:17:57.877Z'
---

## Overview

The jet-form-builder-stripe-gateway WordPress plugin before 1.1.0 does not sanitise and escape a payment token before using it in a SQL statement, allowing unauthenticated users to extract arbitrary data from the database, including password hashes.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
