Description
WordPress Plugin Global Content Blocks is prone to multiple security vulnerabilities, including a remote PHP code execution vulnerability and multiple information disclosure vulnerabilities. Successful exploits of these issues may allow remote attackers to execute arbitrary malicious PHP code in the context of the application or obtain potentially sensitive information. WordPress Plugin Global Content Blocks version 1.5.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.5.2 or latest
References
Related Vulnerabilities
Coming soon and Maintenance mode Unspecified Vulnerability (3.5.4)
myCred-Points, Rewards, Gamification, Ranks, Badges & Loyalty Cross-Site Scripting (2.3.2)
Magento CVE-2020-9580 Vulnerability (CVE-2020-9580)
WordPress Slider-WP 1 Slider includes Backdoor [Only if downloaded via the vendor website] (1.2.9)