Description
WordPress Plugin Easy Social Feed-Social Photos Gallery-Post Feed-Like Box is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently make unauthorized AJAX calls and access the debug logs. WordPress Plugin Easy Social Feed-Social Photos Gallery-Post Feed-Like Box version 6.3.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 6.3.4 or latest
References
Related Vulnerabilities
TYPO3 URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2020-15241)
WordPress Plugin KN Fix Your Title Cross-Site Scripting (1.0.1)
WordPress Plugin The Official Facebook Chat Security Bypass (1.5)
Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-19138)