Description
WordPress Plugin Tera Charts is prone to multiple local file inclusion vulnerabilities because it fails to sufficiently sanitize user-supplied input. Exploiting these issues may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Tera Charts version 0.1 is vulnerable.
Remediation
Update to plugin version 1.0 or latest
References
Related Vulnerabilities
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-38843)
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-8657)
WordPress Plugin WordLift-AI powered SEO-Schema Cross-Site Scripting (3.37.1)
Oracle JRE CVE-2012-5087 Vulnerability (CVE-2012-5087)
WordPress Plugin Post Grid, List for WordPress-Content Views Cross-Site Scripting (1.6.1)