Description
WordPress Plugin Convert Plus is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently create new accounts. WordPress Plugin Convert Plus version 3.4.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.4.5 or latest
References
Related Vulnerabilities
WebLogic CVE-2022-21361 Vulnerability (CVE-2022-21361)
WordPress Plugin Tutor LMS-eLearning and online course solution Security Bypass (2.6.1)
MODX Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-1010123)
WordPress Plugin Telugu Bible Verse Daily Cross-Site Request Forgery (1.0)