Description
WordPress Plugin Thrive Headline Optimizer is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add arbitrary data to a predefined option in the wp_options table. WordPress Plugin Thrive Headline Optimizer version 1.3.7.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.3.7.3 or latest
References
Related Vulnerabilities
WordPress Plugin Issuu Panel Local/Remote File Inclusion (1.6)
WordPress Plugin YouTube Embed Cross-Site Scripting (3.3.2)
WordPress Plugin Greenshift-animation and page builder blocks Cross-Site Scripting (4.9.9)
WordPress Plugin YOP Poll Cross-Site Scripting (6.1.4)
WordPress Plugin Starbox-the Author Box for Humans Cross-Site Scripting (3.0.8)