Input validation vulnerability in woocommerce-one-page-checkout 2.3.0

The WooCommerce One Page Checkout plugin for WordPress is not secure in versions up to 2.3.0. This means that people who have logged in to the website with a certain type of user account can include and execute any file on the server. This can be used to access information that should not be shared, as well as execute code, even if only certain types of files are allowed to be uploaded.

Detected in:

woocommerce-one-page-checkout fixed vulnerable versions: >= * <= 2.3.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.