Description
WordPress Plugin Faster and Easier scroll to Top for WordPress-Smart Scroll to Top Lite [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin Faster and Easier scroll to Top for WordPress-Smart Scroll to Top Lite version 1.0.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.4 or latest
References
Related Vulnerabilities
WordPress Plugin Profile Extra Fields by BestWebSoft Cross-Site Scripting (1.0.7)
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-17267)
WordPress Plugin Floating Cart for WooCommerce Security Bypass (1.2.2)
WordPress Plugin Transposh WordPress Translation Multiple Vulnerabilities (1.0.8.1)