WordPress Third Party Modules Multiple Vulnerabilities
Description
(#Several vulnerabilities have been identified in third-party plugins for WordPress:#- Ecwid Ecommerce Shopping Cart: PHP object injection without authentication leading to arbitrary PHP code execution#- Store Locator Plus: cross-site scripting#- WP Selected Text Sharer: cross-site scripting et cross-site request forgery#- Welcome Announcement: cross-site scripting#- Force Download: arbitrary file download##Proof of concepts are available.)