Description
WordPress Plugin Realia is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently delete arbitrary posts. WordPress Plugin Realia version 1.4.0 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Woocommerce User Email Verification Security Bypass (3.3.0)
WordPress Plugin Ultimate WordPress Auction Cross-Site Request Forgery (1.0.0)
WordPress Plugin wpStoreCart 'upload.php' Arbitrary File Upload (2.5.29)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1135)