Description
WordPress Plugin Responsive Notification Bar for WordPress-Apex Notification Bar Lite [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin Responsive Notification Bar for WordPress-Apex Notification Bar Lite version 2.0.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.5 or latest
References
Related Vulnerabilities
Masa CMS Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-32641)
MongoDb Reachable Assertion Vulnerability (CVE-2026-25610)
Joomla Improper Input Validation Vulnerability (CVE-2020-35616)
Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-11466)