Description
WordPress Plugin Shortcode Addons-with Visual Composer, Divi, Beaver Builder and Elementor Extension is prone to a function injection vulnerability. An attacker may leverage this issue to call any static method, with up to three optional parameters. WordPress Plugin Shortcode Addons-with Visual Composer, Divi, Beaver Builder and Elementor Extension version 3.2.5 is vulnerable; prior versions may also be affected.
Remediation
Disable and remove the plugin until a fix is available
References
Related Vulnerabilities
Joomla Other Vulnerability (CVE-2006-7009)
Ruby Improper Input Validation Vulnerability (CVE-2009-4492)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2020-11113)
WordPress Plugin bSuite Cross-Site Scripting (4.0.7)
WordPress Plugin Pay Per Media Player Multiple Cross-Site Scripting Vulnerabilities (1.24)