Input validation vulnerability in WPC Shop as a Customer for WooCommerce 1.2.6

A popular plugin for WordPress called “WPC Shop as a Customer for WooCommerce” has a security flaw in versions 1.2.6 and below. This flaw allows hackers who have subscriber-level access or higher to inject a harmful code into the plugin. There is no known fix for this issue, but if the website has other plugins or themes installed, it could make the situation worse by allowing the hacker to delete files, steal private information, or run their own code on the website.

Detected in:

WPC Shop as a Customer for WooCommerce fixed vulnerable versions: >= * <= 1.2.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.