Description
WordPress Plugin WooCommerce Smart Coupons is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently send themselves gift certificates of any value, which could be redeemed for the products sold. WordPress Plugin WooCommerce Smart Coupons version 4.6.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.6.5 or latest
References
Related Vulnerabilities
WordPress Plugin Print Invoice & Delivery Notes for WooCommerce Cross-Site Scripting (4.7.1)
WordPress Plugin Social Sharing-Sassy Social Share Cross-Site Scripting (3.3.25)
Drupal Other Vulnerability (CVE-2008-3661)
Oracle Database Server CVE-2011-0805 Vulnerability (CVE-2011-0805)
WordPress Plugin SAML SP Single Sign On-SSO login Cross-Site Scripting (4.8.72)