Description
WordPress Plugin WP fail2ban is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently perform a variety of the plugin's actions or even take over a website. WordPress Plugin WP fail2ban version 4.0.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.2.8 or latest
References
Related Vulnerabilities
WordPress Plugin Simple File List Arbitrary File Download (3.2.7)
Jenkins Missing Authorization Vulnerability (CVE-2017-1000400)
WordPress Plugin LittleBot ACH for Stripe + Plaid Unspecified Vulnerability (1.2.6)
MySQL CVE-2018-2600 Vulnerability (CVE-2018-2600)
WordPress Plugin LifterLMS-WP LMS for eLearning, Online Courses, & Quizzes Security Bypass (3.34.5)