WordPress Plugin Product Addons Fields for WooCommerce Same Origin Method Execution (SOME) - CVE-2016-4566
WordPress Plugin Product Addons Fields for WooCommerce is prone to same origin method execution (SOME) vulnerability. The impact of a SOME attack is similar to the impact of cross-site scripting though there are some important and distinguishing exploitation restrictions. An attacker may leverage this issue to hijack dangerous web functionality and even exfiltrate sensitive user data. WordPress Plugin Product Addons Fields for WooCommerce version 14.0 is vulnerable prior versions may also be affected.
