The Master Addons plugin for WordPress has a security vulnerability that allows attackers to inject harmful code into pages. This is due to a lack of proper filtering and protection. This can be exploited by users with Contributor-level access or higher.