The MPG plugin for WordPress, known as the Multiple Page Generator Plugin, has a security issue that allows attackers to run code on the server. This vulnerability exists in all versions up to and including 3.4.0. Attackers with editor-level access or higher can exploit this vulnerability.