The Booster for WooCommerce plugin for WordPress has a security issue in versions up to, and including, 5.6.8. If a malicious user can trick the site administrator into clicking on a link, they can invoke certain functions without authenticating, which is not secure. This is because the plugin does not properly validate nonce, a form of security, on several functions.