Description
WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently overwrite any page on the site with malicious JavaScript. WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates version 2.7.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.7.1 or latest
References
Related Vulnerabilities
MyBB Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-5131)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-10890)
WordPress Plugin Contest Gallery-Photo Contest for WordPress SQL Injection (13.1.0.5)