The Booster Elite plugin for WooCommerce on WordPress has a security vulnerability that allows unauthorized users to access order information. This affects all versions up to 7.1.2, but not including that version. This means that anyone with subscriber-level access or higher can view any order information without proper authorization.