The WPPizza plugin for WordPress, which is used by restaurants, has a security issue that allows unauthorized access. This means that people who are not supposed to have access can still perform actions on the plugin. This vulnerability exists in all versions up to and including 3.19.8. As a result, attackers with at least Subscriber-level access can perform actions that they should not be able to do.