Description
WordPress Plugin WP to Twitter is prone to an authorization bypass vulnerability. Attackers can exploit this vulnerability to perform otherwise restricted actions and subsequently post tweets to the admin's twitter account. WordPress Plugin WP to Twitter version 2.9.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.9.4 or latest
References
Related Vulnerabilities
WordPress Plugin SP Project & Document Manager Multiple Vulnerabilities (2.5.9.7)
WordPress Plugin WooCommerce Address Book Cross-Site Request Forgery (1.5.6)
Joomla URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2020-24598)
WordPress Plugin YouTube Cross-Site Request Forgery (11.8.1)