EDGARROJAS WooCommerce PDF Invoice Builder
cpe:2.3:a:rednao:woocommerce_pdf_invoice_builder:*:*:*:*:wordpress:*:*
- <= 2.0.8
A vulnerability allowing the exposure of sensitive system information to an unauthorized control sphere has been identified in the WordPress WooCommerce PDF Invoice Builder plugin, specifically in versions through 2.0.8. This issue allows for the retrieval of embedded sensitive data that is not typically accessible to regular users.
Exploitation of this vulnerability could lead to unauthorized access to sensitive information, which could be used to exploit other weaknesses in the system.
Users of the WooCommerce PDF Invoice Builder plugin should update to version 2.0.9 or later. Patchstack users can enable auto-update for vulnerable plugins.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.