A security expert has managed to identify three vulnerabilities on paypal-marketing.com, the website used by the payment processor for the PayPal Partner Program. Behrouz Sadeghipour has found and reported a cross-site scripting (XSS) issue, a remote code execution flaw and an information disclosure vulnerability. Initially, the researcher found the XSS flaw, which he reported to PayPals security team on March 19. The XSS was addressed on April 9. One day after the XSS was fixed, S…