Description
WordPress Plugin Thrive Optimize is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add arbitrary data to a predefined option in the wp_options table. WordPress Plugin Thrive Optimize version 1.4.13.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.4.13.3 or latest
References
Related Vulnerabilities
WordPress Plugin InBoundio Marketing Arbitrary File Upload (2.0.3)
WordPress 4.0.x Multiple Vulnerabilities (4.0 - 4.0.22)
WordPress Plugin WordPress Leads Cross-Site Scripting (1.6.2)
WordPress Plugin Eventr SQL Injection (1.02.2)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0216)