Description
WordPress Plugin CMS Tree Page View is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently move pages. WordPress Plugin CMS Tree Page View version 1.3.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.4 or latest
References
Related Vulnerabilities
WordPress Plugin uCare-Support Ticket System Cross-Site Scripting (1.2.1)
WordPress Plugin Email Log Cross-Site Scripting (2.2.2)
WordPress Plugin Abandoned Cart Pro for WooCommerce Cross-Site Scripting (7.11.1)
Joomla URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2022-23798)