Description
WordPress Plugin WooCommerce PayPal Checkout Payment Gateway is prone to parameter tampering. Attackers can exploit this issue by manipulating parameters exchanged between client and server in order to modify application data. WordPress Plugin WooCommerce PayPal Checkout Payment Gateway version 1.6.8 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
Liferay Portal Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-15839)
Joomla! Core 1.5.x Security Bypass (1.5.0 - 1.5.25)
Moodle URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2019-14882)
WordPress Plugin All-in-One WP Migration Arbitrary File Upload (7.40)
WordPress Plugin GamePress-The Game Database Cross-Site Scripting (1.1.0)