Description
WordPress Plugin Social Sharing-Kiwi is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently change option values that would permit to turn on user registration. WordPress Plugin Social Sharing-Kiwi version 2.0.10 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.11 or latest
References
Related Vulnerabilities
WordPress Plugin WooCommerce Salesforce Integration Cross-Site Scripting (1.5.8)
Joomla! Core 1.5.x Information Disclosure (1.5.0 - 1.5.12)
axios Uncontrolled Resource Consumption Vulnerability (CVE-2021-3749)
WordPress Plugin Import and export users and customers Cross-Site Request Forgery (1.14.1.3)