Description
WordPress Plugin Redux Framework is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin Redux Framework version 4.1.23 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.1.24 or latest
References
Related Vulnerabilities
WordPress Other Vulnerability (CVE-2006-6808)
WordPress Plugin Database for Contact Form 7, WPforms, Elementor forms Arbitrary File Upload (1.3.2)
OpenSSL Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2023-5678)
WordPress Plugin Social Networking & E-commerce Arbitrary File Upload (0.0.32)