Description
WordPress Plugin Easy Forms for Mailchimp is prone to a vulnerability that lets attackers inject and execute arbitrary code because the application fails to sanitize user-supplied input. Attackers can exploit this issue to execute arbitrary PHP code within the context of the affected webserver process. WordPress Plugin Easy Forms for Mailchimp version 6.5.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 6.5.3 or latest
References
Related Vulnerabilities
WordPress Plugin WP Product Review Lite Cross-Site Scripting (3.7.5)
WordPress Plugin Ultimate Google Analytics Cross-Site Request Forgery (1.6.0)
WordPress Plugin Booking Calendar-Clockwork SMS Cross-Site Scripting (1.0.5)
WordPress Plugin YITH WooCommerce Subscription Security Bypass (1.3.4)
WordPress Plugin Weekly Schedule Cross-Site Scripting (3.4.2)