Description
WordPress Plugin WC Duplicate Order is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently duplicate orders. WordPress Plugin WC Duplicate Order version 1.5 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin WordPress Comment Rating Cross-Site Scripting (1.5.3)
WordPress Credentials Management Errors Vulnerability (CVE-2009-2762)
WordPress Plugin EME Sync Facebook Events Unspecified Vulnerability (1.0.38)
WordPress Plugin Hostel Cross-Site Scripting (1.1.3)
WordPress Plugin Filedownload Multiple Vulnerabilities (1.4)