WordPress Plugin Advanced Forms for ACF Pro Security Bypass - CVE-2021-24892 - Vulnerability Database

WordPress Plugin Advanced Forms for ACF Pro Security Bypass - CVE-2021-24892

High
Reference: CVE-2021-24892
Title: WordPress Plugin Advanced Forms for ACF Pro Security Bypass
Overview:

WordPress Plugin Advanced Forms for ACF Pro is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently change arbitrary users email address and request for reset password which could lead to take over of WordPresss administrator account. WordPress Plugin Advanced Forms for ACF Pro version 1.6.8 is vulnerable prior versions may also be affected.