Get a Pentest and security assessment of your IT network.

News

WordPress 4.2.3 released, fixing critical security hole. Update!

WordPress has just released version 4.2.3, a security and maintenance update for all previous versions of the software. The latest security update is in how shortcodes are used in HTML attributes. This could enable maliciously-crafted shortcodes to bypass WordPresss kses code which is designed to strip bad stuff out of HTML, by tricking it into thinking the code is valid. The vulnerability may allow users without the unfiltered_html capability, but with publishing rights, to run JavaScript code on the front end of the website.”]

Source: https://grahamcluley.com/wordpress-4-2-3-security-update/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks