CVE-2022-4047 | Return Refund and Exchange for WooCommerce Plugin up to 4.0.8 on WordPress Attachment File unrestricted upload
A vulnerability, which was classified as critical, was found in Return Refund and Exchange for WooCommerce Plugin up to 4.0.8 on WordPress. This affects an unknown part of the component Attachment File Handler. The manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2022-4047. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.