A flaw in how WordPress handles privilege assignments can be exploited to permit attackers to hijack WooCommerce websites. The issue in the content management system (CMS) was discovered by Simon ...
Two vulnerabilities affecting some version of Jupiter X Core, a premium plugin for setting up WordPress and WooCommerce websites, allow hijacking accounts and uploading files without authentication.
A design flaw in the WordPress permission system used by plugins and a file deletion vulnerability in a very popular eCommerce plugin called WooCommerce could allow attackers to gain full control over ...