Description
WordPress Plugin Query Interface is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently manipulate SQL queries by executing arbitrary SQL code. WordPress Plugin Query Interface version 1.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.2 or latest
References
Related Vulnerabilities
PostgreSQL Insufficiently Protected Credentials Vulnerability (CVE-2021-23222)
WebLogic Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2018-1000180)
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0050)