WooCommerce Products Filter v1.1.9 and WOOF - WooCommerce Products Filter v.2.1.9 suffers from a local file include vulnerability. woof_products ShortCode The woof_products short-code has an argument called custom_tpl public function woof_products($atts, $is_prediction = false) { $_REQUEST['woof_products_doing'] = 1; //add_…