Description
WordPress Plugin Battle Suit for Divi is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently perform a variety of the plugin's actions or even take over a website. WordPress Plugin Battle Suit for Divi version 1.10.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.11.0 or latest
References
Related Vulnerabilities
Squid Out-of-bounds Write Vulnerability (CVE-2019-12519)
WordPress Plugin WP Custom Fields Search Cross-Site Scripting (0.3.28)
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-7890)
PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-0866)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9700)