The WP GDPR Compliance plugin allows unauthenticated users to execute any action and update any database value. This vulnerability is due to the lack of proper validation in the Includes/Ajax.php file.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view