Description
WordPress Plugin WP to Twitter is prone to an authorization bypass vulnerability. Attackers can exploit this vulnerability to perform otherwise restricted actions and subsequently post tweets to the admin's twitter account. WordPress Plugin WP to Twitter version 2.9.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.9.4 or latest
References
Related Vulnerabilities
WordPress Plugin Complianz-GDPR/CCPA Cookie Consent Cross-Site Scripting (6.4.1)
WordPress Plugin Flog Server-Side Request Forgery (1.0beta3)
e107 Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-2099)
WordPress Plugin Arlo training and event management system Cross-Site Scripting (2.1.7.1)