Description
WordPress Plugin JupiterX Core is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin JupiterX Core version 2.0.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.8 or latest
References
Related Vulnerabilities
MySQL CVE-2020-2780 Vulnerability (CVE-2020-2780)
WordPress Plugin SPNbabble Cross-Site Request Forgery (1.4.1)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-30537)
WordPress Plugin Print Invoice & Delivery Notes for WooCommerce Cross-Site Request Forgery (4.7.2)
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-2983)