Description
WordPress Plugin Simple Giveaways-Grow your business, email lists and traffic with contests is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently perform a variety of the plugin's actions or even take over a website. WordPress Plugin Simple Giveaways-Grow your business, email lists and traffic with contests version 2.17.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.18.0 or latest
References
Related Vulnerabilities
WordPress Plugin Auto ThickBox Plus Cross-Site Scripting (1.9)
Twisted Web HTTP Server Improper Certificate Validation Vulnerability (CVE-2019-12855)
WordPress Plugin MobileChief-Mobile Site Builder Cross-Site Scripting (1.5.7)
Apache Tomcat Other Vulnerability (CVE-2001-1563)
CakePHP Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-35239)