Description
WordPress Plugin SpamBam is prone to a security bypass vulnerability because client accessible data can be used to calculate verification keys. Attackers can exploit this issue to submit arbitrary form data via automated scripts and distribute spam.
Remediation
Disable the plugin
References
Related Vulnerabilities
WordPress Plugin Community Events 'id' Parameter SQL Injection (1.2.2)
WordPress Plugin LearnPress-WordPress LMS Cross-Site Request Forgery (3.2.7.2)
Joomla! Core 3.x.x SQL Injection (3.5.0 - 3.8.5)
WordPress 3.8.x Denial of Service Vulnerability (3.8 - 3.8.25)
WordPress Plugin WP Custom Fields Search Cross-Site Scripting (0.3.28)