Input validation vulnerability in Claudio Sanches – Checkout Cielo for WooCommerce 1.1.0

The plugin “Claudio Sanches – Checkout Cielo for WooCommerce” for WordPress has a security vulnerability. This means that someone who is not authorized can change important information without permission. This vulnerability exists in all versions up to and including 1.1.0. This could allow someone who is not logged in to change the payment status of orders to “paid” without actually making a payment.

Detected in:

Claudio Sanches – Checkout Cielo for WooCommerce open vulnerable versions: >= * <= 1.1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.