Description
WordPress Plugin WPBook is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin WPBook version 2.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.7.1 or latest
References
Related Vulnerabilities
WordPress Plugin Invoicing with InvoiceXpress for WooCommerce-Free Cross-Site Scripting (3.0.2)
WordPress Plugin MapifyLite (by MapifyPro) Cross-Site Scripting (3.3)
e107 Other Vulnerability (CVE-2006-4548)
WordPress Plugin Rekt Slideshow TimThumb Arbitrary File Upload (1.0.5)
WordPress Plugin Usernoise modal feedback/contact form Cross-Site Scripting (3.7.8)