Description
WordPress Plugin Abstract Submission is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Abstract Submission version 0.6 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Backup by Supsystic Local File Inclusion (2.3.9)
MediaWiki Insertion of Sensitive Information into Log File Vulnerability (CVE-2018-0504)
WordPress 5.1.x Multiple Vulnerabilities (5.1 - 5.1.4)
WordPress Plugin Profiles 'bio-img.php' SQL Injection (2.0RC1)
WordPress Plugin Elementor Website Builder Cross-Site Scripting (2.8.4)