WordPress Third Party Modules Multiple Vulnerabilities
Description
(#Several vulnerabilities have been identified in third-party plugins for WordPress:#- Woo Custom Checkout Field: stored cross-site scripting and a cross-site request forgery#- Q and A: post-authentication SQL injection#- 404 to 301: stored cross-site scripting#- Bliss Gallery: arbitrary file upload#- Catpro Gallery: arbitrary file upload.##Proof of concepts are available.)