Description
WordPress Plugin WooCommerce PayPal Checkout Payment Gateway is prone to parameter tampering. Attackers can exploit this issue by manipulating parameters exchanged between client and server in order to modify application data. WordPress Plugin WooCommerce PayPal Checkout Payment Gateway version 1.6.8 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Zephyr Project Manager Cross-Site Scripting (3.2.40)
WordPress Plugin WP Database Reset Multiple Security Bypass Vulnerabilities (3.1)
WordPress Plugin InfiniteWP Client Security Bypass (1.3.7)
WordPress Plugin Under Construction Unspecified Vulnerability (3.85)
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-8093)