Description
WordPress Plugin gboutique is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin gboutique version 1.3 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
OpenSSL Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2019-1559)
WordPress Plugin Awesome Support-WordPress HelpDesk & Support Cross-Site Scripting (5.8.0)
Apache Tomcat Improper Authentication Vulnerability (CVE-2013-2067)
WordPress Plugin WORDPRESS VIDEO GALLERY SQL Injection (2.7)