WordPress Plugin WP GDPR Multiple Vulnerabilities - Vulnerability Database

WordPress Plugin WP GDPR Multiple Vulnerabilities

High
Reference: No Reference
Title: WordPress Plugin WP GDPR Multiple Vulnerabilities
Overview:

WordPress Plugin WP GDPR is prone to multiple vulnerabilities including cross-site scripting and security bypass. Exploiting these issues could allow an attacker to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site to steal cookie-based authentication credentials or to perform otherwise restricted actions and subsequently modify plugins settings delete any comment or tamper with comments table in the database. WordPress Plugin WP GDPR version 2.1.1 is vulnerable prior versions may also be affected.