Description
WordPress Plugin Helpie FAQ-WordPress FAQ Accordion is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently perform a variety of the plugin's actions or even take over a website. WordPress Plugin Helpie FAQ-WordPress FAQ Accordion version 0.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 0.7.1 or latest
References
Related Vulnerabilities
Python Uncontrolled Resource Consumption Vulnerability (CVE-2012-0876)
WordPress Plugin WP to Twitter Cross-Site Scripting (3.0.5)
WordPress Plugin WBW Currency Switcher for WooCommerce Cross-Site Scripting (1.6.5)
Liferay DXP Incorrect Authorization Vulnerability (CVE-2024-38002)
WordPress Plugin WP Customize Login Cross-Site Scripting (1.1)