Description
WordPress Plugin WPBakery Page Builder Clipboard is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently update the license options. WordPress Plugin WPBakery Page Builder Clipboard version 4.5.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.5.8 or latest
References
https://sploitus.com/exploit?id=WPEX-ID:354B98D8-46A1-4189-B347-198701EA59B9
https://codecanyon.net/item/visual-composer-clipboard/8897711#item-description__changelog
Related Vulnerabilities
WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors Cloaking (2.2.9)
WordPress Plugin Flexible Captcha Security Bypass (4.0)
Joomla! Core 2.5.x Remote File Inclusion (2.5.4 - 2.5.25)
WordPress Plugin MX Time Zone Clocks Cross-Site Scripting (3.4)
WordPress Plugin Content Control-User Access Restriction Cross-Site Scripting (1.1.9)