The Abandoned Cart Lite for WooCommerce plugin for WordPress is vulnerable to a security issue in versions up to, and including, 1.8. This vulnerability permits authenticated attackers, with permissions of editor level or higher, to access sensitive information from the database. The issue occurs due to insufficient escaping of user-supplied parameters and lack of sufficient preparation of existing SQL queries.