Return Refund and Exchange For WooCommerce <= 4.5.5 - Insecure Direct Object Reference to Authenticated (Subscriber+) Arbitrary Order Message Read
woo-refund-and-exchange-lite
Publicado: 20/11/2025
Se ha identificado una vulnerabilidad de tipo RCE en el plugin 'Return Refund and Exchange For WooCommerce' en versiones hasta la 4.5.5. Esta falla permit…