Description
WordPress Plugin WooCommerce-Store Toolkit is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin WooCommerce-Store Toolkit version 1.5.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.5.8 or latest
References
http://www.pritect.net/blog/visser-labs-wordpress-plugins-multiple-vulnerabilities
https://wordpress.org/plugins/woocommerce-store-toolkit/changelog/
Related Vulnerabilities
WordPress Plugin GenerateBlocks Cross-Site Scripting (1.3.5)
Java Code Execution Vulnerability (CVE-2018-3211)
SharePoint CVE-2021-31173 Vulnerability (CVE-2021-31173)
Drupal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2015-2749)
PrestaShop Improper Authentication Vulnerability (CVE-2021-21308)