Description
WordPress Plugin WP fail2ban is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently perform a variety of the plugin's actions or even take over a website. WordPress Plugin WP fail2ban version 4.0.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.2.8 or latest
References
Related Vulnerabilities
Magento Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-7951)
WordPress Plugin Gwolle Guestbook Remote File Inclusion (1.5.3)
WordPress Plugin WordPress Connect Cross-Site Scripting (2.0.3)
WordPress Plugin user files Arbitrary File Upload (2.4.2)
Apache Tomcat Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2021-41079)