Description
WordPress Plugin Thrive Ultimatum is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add arbitrary data to a predefined option in the wp_options table. WordPress Plugin Thrive Ultimatum version 2.3.9.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.3.9.4 or latest
References
Related Vulnerabilities
Oracle Database Server CVE-2015-4753 Vulnerability (CVE-2015-4753)
MySQL CVE-2022-21357 Vulnerability (CVE-2022-21357)
Squid Improper Input Validation Vulnerability (CVE-2009-2855)
Oracle JRE CVE-2013-2432 Vulnerability (CVE-2013-2432)
Oracle HTTP Server Use After Free Vulnerability (CVE-2019-10082)