Description
WordPress Plugin WooCommerce PayPal Checkout Payment Gateway is prone to parameter tampering. Attackers can exploit this issue by manipulating parameters exchanged between client and server in order to modify application data. WordPress Plugin WooCommerce PayPal Checkout Payment Gateway version 1.6.8 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
Accordion Cross-Site Scripting (2.2.8)
SugarCRM Other Vulnerability (CVE-2006-6712)
Ruby on Rails URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2021-44528)
Oracle JRE CVE-2013-2418 Vulnerability (CVE-2013-2418)
Import any XML or CSV File to WordPress Arbitrary File Upload (3.6.7)