High
CVE-2023-0039
ODude UPG plugin for WordPress could allow a remote attacker to execute arbitrary commands on the system, caused by an authorization bypass flaw. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system.
Command Execution
WordPress
Upgrade to the latest version of ODude UPG plugin for WordPress, available from the WordPress Plugins Directory.