Description
WordPress Plugin WooCommerce Stock Manager is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently change a number of product details including the price, stock status, and the weight of the product. WordPress Plugin WooCommerce Stock Manager version 1.0.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.8 or latest
References
Related Vulnerabilities
WordPress Plugin Social Sharing-Social Warfare Cross-Site Scripting (3.5.3)
WordPress Plugin WP-Filebase Download Manager Cross-Site Scripting (3.1.02)
b2evolution Improper Input Validation Vulnerability (CVE-2017-1000423)
XWiki Incorrect Authorization Vulnerability (CVE-2024-38369)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-0213)