Cross-site request forgery (CSRF) vulnerability in the Search Everything plugin before 8.1.1 for WordPress allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2014-3780