Description
WordPress Plugin Comments Like Dislike is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add unlimited like/dislike to any comment. WordPress Plugin Comments Like Dislike version 1.1.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.1.4 or latest
References
https://sploitus.com/exploit?id=WPEX-ID:AAE7A889-195C-45A3-BBE4-E6D4CD2D7FD9
https://plugins.svn.wordpress.org/comments-like-dislike/trunk/readme.txt
Related Vulnerabilities
MySQL CVE-2020-2762 Vulnerability (CVE-2020-2762)
WordPress Plugin moreAds SE Open Redirect (1.4.8)
WordPress Plugin Image Gallery-Responsive Photo Gallery SQL Injection (1.8.9)
WordPress Plugin RSS Redirect & Feedburner Alternative Unspecified Vulnerability (1.9)
WordPress Plugin Bookly #1 WordPress Booking Plugin (Lite Version) Cross-Site Scripting (14.4)