Description
WordPress Plugin Link Library is prone to an SQL injection and a cross-site scripting vulnerability. Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database. WordPress Plugin Link Library version 5.0.8 is vulnerable; other versions may also be affected.
Remediation
Update to plugin version 5.0.9 or latest
References
Related Vulnerabilities
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1854)
WordPress Plugin MetaSlider Cross-Site Scripting (2.6.2)
WordPress Plugin WP Maintenance Mode Cross-Site Scripting (2.2.3)
WordPress Plugin Elementor Website Builder Unspecified Vulnerability (1.8.8)
Atlassian Jira CVE-2019-20413 Vulnerability (CVE-2019-20413)