The Abandoned Cart Lite for WooCommerce plugin for WordPress is vulnerable to security issues in versions up to and including 5.14.1. This means that attackers who are not authenticated (not logged in) may be able to delete a coupon code that has expired, if they can fool a site administrator into clicking a link. The exact impact of this vulnerability is not known.