A vulnerability was found that allowed authenticated admin users to access any file on the server.
The vulnerability has been fixed in 3.0.4.
We recommend disabling the plugin if untrustworthy sources have admin access.
If you have any questions or comments about this advisory: * Open an issue in ether/logs
{ "nvd_published_at": "2021-07-09T14:15:00Z", "github_reviewed_at": "2021-07-09T14:04:21Z", "severity": "HIGH", "github_reviewed": true, "cwe_ids": [ "CWE-552" ] }