Description
WordPress Plugin Thrive Architect is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add arbitrary data to a predefined option in the wp_options table. WordPress Plugin Thrive Architect version 2.6.7.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.6.7.4 or latest
References
Related Vulnerabilities
WordPress Plugin Customer Service Software & Support Ticket System Cross-Site Scripting (5.5.1)
WordPress Plugin Easy Forms for Mailchimp Unspecified Vulnerability (6.6.2)
PostgreSQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-5288)
SharePoint CVE-2020-1444 Vulnerability (CVE-2020-1444)
WordPress Plugin Gallery-Video Gallery and Youtube Gallery Cross-Site Scripting (1.7.01)