CVE-2024-10800 — The WordPress User Extra Fields plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the ajax_save_fields() function in all versions up to, and including, 16 — CVE Database · The Intelligence Room