A popular plugin for WordPress called “Bit Assist” has a security flaw that can be exploited by hackers. This flaw, known as Path Traversal, affects all versions of the plugin up to version 1.5.2. With this vulnerability, attackers who have Administrator-level access or higher can access and view files on the server, including ones with sensitive information.