Description
WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently bypass the LiveJournal (a Russian social network) authentication process. WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer version 7.12.37 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 7.12.39 or latest
References
https://blog.nintechnet.com/wordpress-plugins-and-themes-vulnerabilities-roundup/
https://plugins.svn.wordpress.org/super-socializer/trunk/readme.txt
Related Vulnerabilities
Python Improper Input Validation Vulnerability (CVE-2018-20852)
Oracle Database Server CVE-2015-4923 Vulnerability (CVE-2015-4923)
Magento Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-7903)
WordPress Plugin MetaSlider Information Disclosure (3.3.1)
phpMyAdmin 7PK - Security Features Vulnerability (CVE-2016-6626)