Description
WordPress Plugin Brizy-Page Builder is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently gain full access to the editor. WordPress Plugin Brizy-Page Builder version 1.0.125 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.126 or latest
References
Related Vulnerabilities
WordPress 'wp-register.php' Multiple Cross-Site Scripting Vulnerabilities (2.0 - 2.0.1)
Joomla Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-11322)
WordPress Plugin WHOIS 'domain' Parameter Cross-Site Scripting (1.4.2.2)
WordPress Plugin ULTIMATE TABLES SQL Injection (1.5)
WordPress Plugin Facebook Like Box Unspecified Vulnerability (1.0.17)