Description
WordPress Plugin WooCommerce Email Test is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information (orders, customer details, email address, cart content, payment type, etc.) that may help in launching further attacks. WordPress Plugin WooCommerce Email Test version 1.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.6 or latest
References
https://www.jansass.com/team-wpscantastic-findet-sicherheitsluecke-in-woocommerce-email-test/
https://wordpress.org/plugins/woocommerce-email-test/changelog/
Related Vulnerabilities
Oracle Database Server Improper Authentication Vulnerability (CVE-2012-3137)
Contao Improper Privilege Management Vulnerability (CVE-2021-37627)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2020-9547)
MySQL CVE-2012-0489 Vulnerability (CVE-2012-0489)
Oracle Database Server CVE-2008-2604 Vulnerability (CVE-2008-2604)