The Woocommerce plugin has a vulnerability that makes it possible for authenticated users with contributor level and above to access products classified as private, draft or trashed....
The Avada theme, Website Builder for WordPress & WooCommerce, is vulnerable to exposure of sensitive information in versions up to and including 7.11.5 through the form entry page....
The plugin is vulnerable to unauthorized access and data modification due to a type manipulation issue on the connect-app REST endpoint in all versions up to and including 2.8.7....