Get a Pentest and security assessment of your IT network.

News

WordPress Shortcodes Security Patch

WordPress upgraded to version 4.3.1 today to fix three vulnerabilities in the core engine. Two of the vulnerabilities were discovered by researchers at Check Point Software Technologies. The most serious of the patched vulnerabilities involve a WordPress-specific feature called shortcodes. Shortcodes are HTML tags that were introduced in version 2.5 as a simple way to embed macros in code, saving developers the hassle of re-writing HTML. An attacker could abuse how the platform processes shortcodes and inject arbitrary JavaScript that would execute when a WordPress page renders.

Source: https://threatpost.com/wordpress-patches-serious-shortcodes-core-engine-vulnerability/114673/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

IntelCrawler profiled Syrian Electronic Army group

News

Wikileaks Vault 7 Imperial projects revealed the 3 hacking tools Achilles, SeaPea and Aeris