Description
WordPress Plugin Thrive Quiz Builder is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add arbitrary data to a predefined option in the wp_options table. WordPress Plugin Thrive Quiz Builder version 2.3.9.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.3.9.4 or latest
References
Related Vulnerabilities
WordPress Plugin Responsive Cookie Consent Cross-Site Scripting (1.7)
Moodle Incorrect Authorization Vulnerability (CVE-2021-20283)
Drupal Exposure of Resource to Wrong Sphere Vulnerability (CVE-2020-13670)
IBM RTC Server-Side Request Forgery (SSRF) Vulnerability (CVE-2020-4974)
TCExam Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-20114)