Description
WordPress Plugin GDPR Cookie Compliance is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently delete its settings. WordPress Plugin GDPR Cookie Compliance version 4.0.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.0.3 or latest
References
Related Vulnerabilities
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-2097)
Drupal Core 8.x Security Bypass (8.0.0 - 8.2.7)
WordPress Plugin Shoppable Images Multiple Vulnerabilities (1.2.3)
WordPress Plugin WP Plugin Manager (WPPM) Cross-Site Scripting (1.6.4.b)
WordPress Plugin WP Activity Log Cross-Site Scripting (2.4.3)