WordPress Plugin Advanced Forms for ACF Security Bypass - CVE-2021-24892 - Vulnerability Database

WordPress Plugin Advanced Forms for ACF Security Bypass - CVE-2021-24892

High
Reference: CVE-2021-24892
Title: WordPress Plugin Advanced Forms for ACF Security Bypass
Overview:

WordPress Plugin Advanced Forms for ACF is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently change arbitrary users email address and request for reset password which could lead to take over of WordPresss administrator account. WordPress Plugin Advanced Forms for ACF version 1.6.8 is vulnerable prior versions may also be affected.