Description
WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce version 2.2.25 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.2.26 or latest
References
Related Vulnerabilities
MySQL CVE-2019-2693 Vulnerability (CVE-2019-2693)
phpMyFAQ Weak Password Requirements Vulnerability (CVE-2023-0793)
Oracle Database Server CVE-2010-0853 Vulnerability (CVE-2010-0853)
Drupal Incorrect Authorization Vulnerability (CVE-2011-2726)
WordPress Plugin SAML SP Single Sign On-SSO login Cross-Site Scripting (4.8.83)