Description
WordPress Plugin Thrive Architect is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add arbitrary data to a predefined option in the wp_options table. WordPress Plugin Thrive Architect version 2.6.7.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.6.7.4 or latest
References
Related Vulnerabilities
WordPress Plugin WordPress Clean Up & Optimizer-Clean Up Optimizer SQL Injection (3.0.13)
WordPress Plugin Request Quote via Whatsapp for Woocommerce Cross-Site Scripting (1.0.1)
Python Improper Input Validation Vulnerability (CVE-2023-27043)
WordPress Plugin WP-Predict 'predictId' Parameter Blind SQL Injection (1.0)
MediaWiki URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-0363)