Input validation vulnerability in Woocommerce Blocks – Woolook 1.7.0

The Woocommerce Blocks – Woolook plugin for WordPress has a security issue that affects all versions up to 1.7.0. This vulnerability, known as Local File Inclusion, allows attackers with Administrator-level access to include and run any files on the server. This could potentially lead to bypassing security measures, accessing sensitive information, or executing malicious code. It is important to note that this vulnerability can also be exploited through CSRF techniques.

Detected in:

Woocommerce Blocks – Woolook open vulnerable versions: >= * <= 1.7.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.