Description
WordPress Plugin ReviewX-Multi-criteria Rating & Reviews for WooCommerce is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin ReviewX-Multi-criteria Rating & Reviews for WooCommerce version 1.6.13 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.6.14 or latest
References
Related Vulnerabilities
Dolibarr Improper Privilege Management Vulnerability (CVE-2020-14201)
Joomla Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-1598)
WordPress Plugin WordPress Download Manager Cross-Site Scripting (2.9.51)
Squid Operation on a Resource after Expiration or Release Vulnerability (CVE-2024-23638)