Description
WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions. WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce version 2.2.22 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.2.23 or latest
References
Related Vulnerabilities
WordPress Plugin WooCommerce Affiliate-Coupon Affiliates Cross-Site Scripting (4.11.0.1)
WordPress Plugin Booking Package-Appointment Booking Calendar System Cross-Site Scripting (1.5.10)
WordPress Plugin Broken Link Checker PHAR Deserialization (1.11.16)
WordPress Improper Input Validation Vulnerability (CVE-2020-35539)