Get a Pentest and security assessment of your IT network.

News

WordPress plugin with 5 million installs has a critical vulnerability

The team behind a popular WordPress plugin has disclosed a critical file upload vulnerability and issued a patch. The plugin, Contact Form 7, has over 5 million active installs making this urgent upgrade a necessity for WordPress site owners out there. An attacker can upload a crafted file with arbitrary code on the vulnerable server using the plugin. The vulnerability has been discovered and reported by Jinson Varghese Behanan, an information security analyst with Astra Security. The fix made by the project, shown below, contains a fix made for the vulnerability.

Source: https://www.bleepingcomputer.com/news/security/wordpress-plugin-with-5-million-installs-has-a-critical-vulnerability/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Vulnerabilities In Alibaba threatens security of million users

News

Russian cybercriminal Roman Seleznev gets another prison sentence