CyberRota Analysis
AI-GeneratedThe Hummingbird Performance plugin for WordPress prior to version 3.21.2 is vulnerable due to insufficient restrictions on network-wide settings, enabling an administrator of any individual site within a multisite network to execute arbitrary code across the entire network. This flaw poses a significant risk as it could lead to unauthorized access and control over all sites in the network. WordPress multisite administrators should prioritize updating to the latest version to mitigate this security risk.
Original NVD Description
The Hummingbird Performance WordPress plugin before 3.21.2 does not restrict a network-wide setting to network administrators, allowing an administrator of any single site on a multisite network to execute arbitrary code across the entire network.