Description
WordPress Plugin WC Duplicate Order is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently duplicate orders. WordPress Plugin WC Duplicate Order version 1.5 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available