Description
WordPress Plugin Stylish Price List is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently upload arbitrary images. WordPress Plugin Stylish Price List version 6.9.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 6.9.1 or latest
References
Related Vulnerabilities
WordPress Plugin WooCommerce Unspecified Vulnerability (4.2.0)
WordPress Plugin Clone Cross-Site Scripting (2.1.1)
WordPress Plugin WP Ajax Recent Posts 'number' Parameter Cross-Site Scripting (1.0.1)
WordPress Plugin Kento Post View Counter Multiple Vulnerabilities (2.8)
WordPress Plugin Jetpack-WP Security, Backup, Speed, & Growth Cross-Site Scripting (3.4.2)