Automattic has patched a reflected cross-site scripting vulnerability in the WooCommerce WordPress plugin.
Source: Threadpost