Description
WordPress Plugin Premmerce Wishlist for WooCommerce is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently perform a variety of the plugin's actions or even take over a website. WordPress Plugin Premmerce Wishlist for WooCommerce version 1.1.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.1.3 or latest
References
Related Vulnerabilities
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-2157)
WordPress Plugin Plotly Cross-Site Scripting (1.0.2)
WordPress Plugin Custom Post Type UI 'wp-admin/admin.php' Cross-Site Scripting (0.7)
WordPress Plugin Xorbin Analog Flash Clock Cross-Site Scripting (1.0)
WordPress Plugin Asgaros Forum Multiple Vulnerabilities (1.15.14)