Description
WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently log in to the site with any user if user's email address is known. WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer version 7.10.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 7.11 or latest
References
Related Vulnerabilities
TCExam Missing Authorization Vulnerability (CVE-2023-6554)
WordPress Plugin UserPro-Community and User Profile Privilege Escalation (4.9.20)
WordPress Plugin mTouch Quiz Multiple Vulnerabilities (3.1.2)
WordPress Plugin RB Agency Local File Disclosure (2.4.7)
WordPress Plugin Add From Server Cross-Site Request Forgery (3.3.1)