Description
WordPress Plugin Simple 301 Redirects by BetterLinks is prone to multiple security bypass vulnerabilities. Exploiting these issues may allow attackers to perform otherwise restricted actions and subsequently set redirects that would deny access to the site, or install and activate arbitrary plugins. WordPress Plugin Simple 301 Redirects by BetterLinks versions starting from 2.0.0 and up to (and including) 2.0.3 are vulnerable.
Remediation
Update to plugin version 2.0.4 or latest
References
Related Vulnerabilities
WordPress Plugin WooCommerce Possible Remote Code Execution (3.5.0)
Liferay DXP Incorrect Default Permissions Vulnerability (CVE-2021-38268)
Roundcube Improper Access Control Vulnerability (CVE-2016-9920)
Moodle Resource Management Errors Vulnerability (CVE-2014-7847)
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2020-12603)