Description
WordPress Plugin WooCommerce Email Test is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information (orders, customer details, email address, cart content, payment type, etc.) that may help in launching further attacks. WordPress Plugin WooCommerce Email Test version 1.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.6 or latest
References
https://www.jansass.com/team-wpscantastic-findet-sicherheitsluecke-in-woocommerce-email-test/
https://wordpress.org/plugins/woocommerce-email-test/changelog/
Related Vulnerabilities
WordPress Plugin Welcart e-Commerce Information Disclosure (2.2.7)
MySQL CVE-2020-2896 Vulnerability (CVE-2020-2896)
WordPress Plugin MainWP Dashboard Unspecified Vulnerability (2.0.22)
Zope Web Application Server Other Vulnerability (CVE-2002-0687)
Jboss EAP Server-Side Request Forgery (SSRF) Vulnerability (CVE-2018-14721)