Description
WordPress Plugin ImportWP-Import any XML or CSV File into WordPress is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently delete specified posts. WordPress Plugin ImportWP-Import any XML or CSV File into WordPress version 1.1.5 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
MySQL CVE-2013-1512 Vulnerability (CVE-2013-1512)
Atlassian Jira URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2019-11589)
WordPress Plugin Master Slider-WordPress Responsive Touch Slider Unspecified Vulnerability (2.18.2)
Moodle Improper Input Validation Vulnerability (CVE-2012-0795)