WordPress WPForms flaw CVE-2024-11205

WordPress WPForms flaw CVE-2024-11205

A critical vulnerability has been discovered in Wordpress plugin WPForms. The flaw allows authenticated attackers with subscriber-level privileges or higher to execute unauthorized refunds of Stripe payments and cancellations of…