Description
WordPress Plugin Enmask Captcha is prone to malicious redirects. Attackers may leverage this issue to promote spam, distribute malware/backdoors, or to perform all kinds of malicious activities. WordPress Plugin Enmask Captcha version 1.3 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Warranties and Returns for WooCommerce Security Bypass (5.2.1)
MySQL CVE-2022-21314 Vulnerability (CVE-2022-21314)
WordPress Plugin Print My Blog-Print, PDF, & eBook Converter Cross-Site Request Forgery (3.4.1)
WebLogic CVE-2017-10336 Vulnerability (CVE-2017-10336)
Plone CMS Missing Authentication for Critical Function Vulnerability (CVE-2020-35190)