The Pods – Custom Content Types and Fields plugin for WordPress has a security vulnerability that allows attackers to remotely execute code through shortcodes. This vulnerability affects all versions up to and including 3.0.10, except for 2.7.31.2, 2.8.23.2, and 2.9.19.2. This means that attackers who have contributor level access or higher can potentially run code on the server.