Description
WordPress Plugin BAVOKO SEO Tools-All-in-One WordPress SEO is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently perform a variety of the plugin's actions or even take over a website. WordPress Plugin BAVOKO SEO Tools-All-in-One WordPress SEO version 2.1.9.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.1.9.8 or latest
References
Related Vulnerabilities
WordPress Plugin Store Locator for WordPress with Google Maps-LotsOfLocales SQL Injection (3.33.1)
WordPress Plugin Video Downloader for TikTok Directory Traversal (1.3)
Ruby on Rails Uncontrolled Resource Consumption Vulnerability (CVE-2020-8185)
Tornado Improper Input Validation Vulnerability (CVE-2012-2374)