I just ran a Wordfence scan on my site and this is what it found. Is there a patch for this?:
The Plugin “Team Member – Multi Language Supported Team Plugin” has a security vulnerability. Type: Plugin Vulnerable
Issue status: Critical
Plugin Name: Team Member – Multi Language Supported Team Plugin
Current Plugin Version: 7.1
Details: To protect your site from this vulnerability, the safest option is to deactivate and completely remove “Team Member – Multi Language Supported Team Plugin” until a patched version is available.
Vulnerability Severity: 7.2/10.0 (High)
The page I need help with: [log in to see the link]
The Team Member plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 7.3. This makes it possible for authenticated attackers, with editor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.
Please review the vulnerability’s details in depth and employ mitigations based on your organization’s risk tolerance. It may be best to uninstall the affected software and find a replacement.