Description
WordPress Plugin Twenty20 Image Before-After contains malicous code. Exploiting this issue may allow an attacker to create a new administrative user account, thus compromising the affected application, and possibly the webserver or computer. WordPress Plugin Twenty20 Image Before-After version 1.6.3 is affected; prior versions may also be affected.
Remediation
Update to plugin version 1.6.4 or latest