Description
WordPress Plugin Page Restrict is prone to an open redirect vulnerability because the application fails to properly verify user-supplied input. Exploiting this issue may allow attackers to redirect users to arbitrary web sites and conduct phishing attacks; other attacks are also possible. WordPress Plugin Page Restrict version 2.2.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.2.4 or latest
References
Related Vulnerabilities
WordPress Plugin Lazyest Backup 'xml_or_all' Parameter Cross-Site Scripting (0.2.1)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-4283)
WordPress Plugin Wonder Video Embed Cross-Site Scripting (1.7)
PHP Other Vulnerability (CVE-2016-4540)
WordPress Plugin Google Analytics Opt-Out Cross-Site Scripting (2.3.4)