A vulnerability in the Wordpress Media-Library-Assistant plugins in version < 3.09 is vulnerable to a local file inclusion which leading to RCE on default Imagegick installation/configuration.
id: CVE-2023-4634
info:
name: Media Library Assistant < 3.09 - Remote Code Execution/Local File I
...