Description
WordPress Plugin Wbcom Designs-BuddyPress Group Reviews is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently modify reviews and plugin settings on the website. WordPress Plugin Wbcom Designs-BuddyPress Group Reviews version 2.8.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.8.4 or latest
References
https://www.wordfence.com/vulnerability-advisories/#CVE-2022-2108
https://plugins.svn.wordpress.org/review-buddypress-groups/trunk/readme.txt
Related Vulnerabilities
PrestaShop URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2020-5270)
PmWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-4453)
OpenSSL CVE-2023-5363 Vulnerability (CVE-2023-5363)
WordPress Plugin Animate It! Cross-Site Request Forgery (2.3.5)
Jboss EAP Improper Input Validation Vulnerability (CVE-2020-1757)