Description
WordPress Plugin RegistrationMagic-User Registration with Custom Registration Forms is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin RegistrationMagic-User Registration with Custom Registration Forms version 5.3.0.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 5.3.1.0 or latest
References
Related Vulnerabilities
Artifactory Incorrect Authorization Vulnerability (CVE-2021-45730)
WordPress Plugin Multisite Post Duplicator Cross-Site Request Forgery (0.9.5.1)
WordPress Plugin Evarisk 'ajax.php' SQL Injection (5.1.3.6)
Moodle Other Vulnerability (CVE-2006-0147)
WordPress Plugin RocketTheme RokBox 'jwplayer.swf' Cross-Site Scripting (2.11)