Description
WordPress Plugin WooCommerce PayPal Checkout Payment Gateway is prone to parameter tampering. Attackers can exploit this issue by manipulating parameters exchanged between client and server in order to modify application data. WordPress Plugin WooCommerce PayPal Checkout Payment Gateway version 1.6.8 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin ImportWP-Import any XML or CSV File into WordPress Security Bypass (1.1.5)
WordPress Plugin Pinpoint Booking System-#1 WordPress Booking SQL Injection (2.9.9.2.8)
Ruby on Rails CVE-2024-28103 Vulnerability (CVE-2024-28103)
Oracle HTTP Server CVE-2019-2414 Vulnerability (CVE-2019-2414)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-2266)