Description
WordPress Plugin Absolute Privacy is prone to a security bypass vulnerability. Attackers can exploit this vulnerability to bypass authentication mechanism and gain administrative access to an affected application, which may aid in further attacks. WordPress Plugin Absolute Privacy version 2.0.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.6 or latest
References
Related Vulnerabilities
WordPress Plugin WordPress Automatic Security Bypass (3.53.2)
WordPress Plugin WP Download Codes Cross-Site Scripting (2.5.1)
Joomla Permissions, Privileges, and Access Controls Vulnerability (CVE-2006-4476)
WordPress Plugin Advanced Custom Fields (ACF) Cross-Site Scripting (5.8.11)
SharePoint Deserialization of Untrusted Data Vulnerability (CVE-2022-22005)