Description
WordPress Plugin Coditor-Code Editor is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently edit or delete any plugin/theme. WordPress Plugin Coditor-Code Editor version 1.1 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
MySQL CVE-2019-2834 Vulnerability (CVE-2019-2834)
Joomla CVE-2026-48900 Vulnerability (CVE-2026-48900)
WordPress Plugin WPeMatico RSS Feed Fetcher Cross-Site Scripting (2.3.7)
silverstripeCMS Session Fixation Vulnerability (CVE-2019-12203)
WordPress Plugin Hungred Post Thumbnail 'hpt_file_upload.php' Arbitrary File Upload (2.1.9)