Description
WordPress Plugin WP DSGVO Tools (GDPR) is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently completely and permanently delete arbitrary posts and pages on a website. WordPress Plugin WP DSGVO Tools (GDPR) version 3.1.23 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.1.24 or latest
References
Related Vulnerabilities
Liferay Portal Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2022-42129)
Microsoft SQL Server Other Vulnerability (CVE-2003-0231)
Restlet Framework XML Injection (aka Blind XPath Injection) Vulnerability (CVE-2013-4221)
Oracle JRE CVE-2018-2663 Vulnerability (CVE-2018-2663)
WordPress Plugin WP Easy full backup Information Disclosure (1.4)