Description
WordPress Plugin Thrive Architect is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add arbitrary data to a predefined option in the wp_options table. WordPress Plugin Thrive Architect version 2.6.7.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.6.7.4 or latest
References
Related Vulnerabilities
WordPress Plugin WP User Groups Cross-Site Request Forgery (2.0.0)
WordPress Plugin BuddyPress Extended Friendship Request Cross-Site Scripting (1.0.1)
WordPress CVE-2023-39999 Vulnerability (CVE-2023-39999)
WordPress Plugin WP jPlayer Cross-Site Scripting (0.1)
WordPress Plugin Easy Registration Forms Unspecified Vulnerability (1.8.4)