Description
WordPress Plugin User Registration-Custom Registration Form, Login Form And User Profile is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently send a test email. WordPress Plugin User Registration-Custom Registration Form, Login Form And User Profile version 2.3.2.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.3.3 or latest
References
Related Vulnerabilities
WordPress Plugin WP-Live Chat by 3CX Cross-Site Request Forgery (8.0.37)
Python Improper Neutralization of CRLF Sequences ('CRLF Injection') Vulnerability (CVE-2019-9947)
OpenSSL Other Vulnerability (CVE-2002-1568)
Oracle HTTP Server Other Vulnerability (CVE-2006-5349)
WordPress Plugin Top 10-Popular posts for WordPress Multiple Vulnerabilities (3.2.3)