Description
WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently overwrite any page on the site with malicious JavaScript. WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates version 2.7.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.7.1 or latest
References
Related Vulnerabilities
TYPO3 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-4627)
WordPress Plugin ChenPress Arbitrary File Upload (3.0)
WordPress Plugin BulletProof Security Multiple Vulnerabilities (.51)
UAParser.js Inefficient Regular Expression Complexity Vulnerability (CVE-2022-25927)
Oracle Database Server CVE-2007-2114 Vulnerability (CVE-2007-2114)