Description
WordPress Plugin Grow by Tradedoubler-Advertiser for WooCommerce is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Grow by Tradedoubler-Advertiser for WooCommerce version 2.0.21 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.22 or latest
References
Related Vulnerabilities
WordPress Plugin Redux Framework Cross-Site Request Forgery (4.1.23)
MyBB Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9410)
WordPress 6.1.x Multiple Vulnerabilities (6.1 - 6.1.4)
Jenkins Improper Restriction of Rendered UI Layers or Frames Vulnerability (CVE-2020-2105)