Description
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently gather information about users that can targeted in further attacks. WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan version 9.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 9.1 or latest
References
https://www.wordfence.com/vulnerability-advisories/#CVE-2022-2939
https://plugins.svn.wordpress.org/wp-cerber/trunk/readme.txt
Related Vulnerabilities
ProjectSend Improper Neutralization of Formula Elements in a CSV File Vulnerability (CVE-2018-7201)
SharePoint CVE-2024-30043 Vulnerability (CVE-2024-30043)
Drupal Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-25277)
XWiki URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2022-23618)