Description
WordPress Plugin Stylish Price List is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently upload arbitrary images. WordPress Plugin Stylish Price List version 6.9.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 6.9.1 or latest
References
Related Vulnerabilities
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9854)
WordPress Plugin Job Manager Multiple Cross-Site Scripting Vulnerabilities (0.7.18)
Apache Traffic Server Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
Plone CMS Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-33510)