Description
WordPress Plugin Captcha by BestWebSoft is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently bypass intended restrictions. WordPress Plugin Captcha by BestWebSoft version 3.8.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.8.8 or latest
References
Related Vulnerabilities
WordPress Plugin Tutor LMS-eLearning and online course solution SQL Injection (1.8.2)
WordPress Plugin CigiCigi Post Guest Cross-Site Scripting (1.0.5)
Joomla! Core 2.5.x Cross-Site Scripting (2.5.0 - 2.5.18)
Oracle JRE CVE-2013-2425 Vulnerability (CVE-2013-2425)
Rukovoditel Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-20166)