WordPress Plugin Yoast SEO Possible Remote Code Execution - CVE-2018-19370 - Vulnerability Database

WordPress Plugin Yoast SEO Possible Remote Code Execution - CVE-2018-19370

High
Reference: CVE-2018-19370
Title: WordPress Plugin Yoast SEO Possible Remote Code Execution
Overview:

WordPress Plugin Yoast SEO is prone to a possible remote code execution vulnerability because it fails to sufficiently sanitize user-supplied input. Successful exploitation may allow attackers to execute arbitrary commands with the privileges of the user running the application to compromise the application or the underlying database to access or modify data or to compromise a vulnerable system. WordPress Plugin Yoast SEO version 9.1.0 is vulnerable prior versions may also be affected.