Description
WordPress Plugin 10Web Social Feed for Instagram is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently modify plugin settings. WordPress Plugin 10Web Social Feed for Instagram version 1.3.18 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
MySQL CVE-2015-4895 Vulnerability (CVE-2015-4895)
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3818)
Moodle Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-6970)
TCExam Other Vulnerability (CVE-2010-2153)
WordPress Plugin 2kb Amazon Affiliates Store Cross-Site Scripting (2.1.0)