Description
WordPress Plugin WooCommerce Smart Coupons is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently send themselves gift certificates of any value, which could be redeemed for the products sold. WordPress Plugin WooCommerce Smart Coupons version 4.6.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.6.5 or latest
References
Related Vulnerabilities
WordPress Plugin Visitor Traffic Real Time Statistics Cross-Site Request Forgery (2.12)
MySQL CVE-2021-2021 Vulnerability (CVE-2021-2021)
WordPress Plugin All-in-One Event Calendar Multiple Vulnerabilities (2.3.12)
WordPress Plugin GiveWP-Donation and Fundraising Platform SQL Injection (2.24.0)
WordPress Plugin Translate WordPress-Google Language Translator Cross-Site Scripting (6.0.9)