CyberRota Analysis
AI-GeneratedThe Brizy WordPress plugin prior to version 2.8.19 is vulnerable due to improper authorization verification, allowing users with Contributor-level access and higher to modify the template-type assignment of templates owned by other users. This could lead to unauthorized changes in template configurations, potentially impacting site integrity and user trust. WordPress site administrators and developers using this plugin should prioritize updating to the latest version to mitigate this risk.
Original NVD Description
The Brizy WordPress plugin before 2.8.19 does not properly verify authorization on the object being modified before updating a template's type meta, validating a request parameter that is different from the one used in the write operation, allowing users with Contributor-level access and above to change the template-type assignment of templates owned by other users.