The Market Exporter plugin for WordPress has a security vulnerability called Cross-Site Request Forgery. This can happen in any version up to 2.0.22 because the plugin does not properly check for a special code that helps prevent unauthorized actions. This means that someone who is not logged in can trick a site administrator into doing something without permission, like clicking on a link.