Description
WordPress Plugin Music Store is prone to an open redirect vulnerability because the application fails to properly verify user-supplied input. Exploiting this issue may allow attackers to redirect users to arbitrary web sites and conduct phishing attacks; other attacks are also possible. WordPress Plugin Music Store version 1.0.14 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.15 or latest
References
Related Vulnerabilities
YetiForce CRM Improper Input Validation Vulnerability (CVE-2021-4111)
MySQL CVE-2016-5439 Vulnerability (CVE-2016-5439)
MySQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-2922)
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-13082)