Weak configuration vulnerability in SKT PayPal for WooCommerce 1.4

A plugin called SKT PayPal for WooCommerce on the website WordPress has a security issue that allows people to make purchases without paying for them. This problem affects all versions of the plugin up to version 1.4. It happens because the plugin only checks for payment on the user’s computer, instead of on the server. This means that anyone who is not logged in can make a purchase without actually paying.

Detected in:

SKT PayPal for WooCommerce fixed vulnerable versions: >= * <= 1.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.