Description
WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently log in to the site with any user if user's email address is known. WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer version 7.10.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 7.11 or latest
References
Related Vulnerabilities
Nginx Out-of-bounds Write Vulnerability (CVE-2014-0133)
Magento Deserialization of Untrusted Data Vulnerability (CVE-2019-8141)
WordPress Plugin Disable Image Right Click Cross-Site Scripting (1.0)
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-16942)
Apache Tomcat 7PK - Security Features Vulnerability (CVE-2014-9634)