Get a Pentest and security assessment of your IT network.

Cyber Security

WordPress XSS Bug Allows Drive-By Code Execution

A just-patched stored cross-site scripting (XSS) vulnerability in WordPress allowed drive-by remote code-execution, according to an analysis. The bug exists in the built-in editor Gutenberg, which is found in WordPress 5.0 to 5.2.2. Sites that use the Gutenberg are open to complete takeover. The National Institute of Standards and Technology assigned the vulnerability a Common Vulnerabilities and Exposures rating of 6.1, making it a Medium severity bug.

Source: https://threatpost.com/wordpress-xss-drive-by-code-execution/148324/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security