Get a Pentest and security assessment of your IT network.

Cyber Security

WordPress Plugin WP Statistics Patches XSS Flaw

WordPress plugin WP Statistics has patched a cross-site scripting (XSS) vulnerability that could allow for full website takeover. The vulnerability stems from the plugin failing to sanitize or validate users IP address when it uses a header to identify their IP address. The plugin is made by VeronaLabs and has more than 500,000 active installations. A patch has been issued in version 12.6.7 that addresses the flaw. Researchers urged plugin users to update to the patched version.

Source: https://threatpost.com/wordpress-plugin-wp-statistics-patches-xss-flaw/146248/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security