Top WordPress anti-spam plugin may actually be putting your site at risk of attack




  • Researchers found two flaws in a popular WordPress plugin
  • Flaws allow threat actors to install malicious plugins and run arbitrary code
  • A patch is already available, so WordPress users should update now

A major anti-spam plugin for top website builder WordPress carried a pair of critical severity vulnerabilities which allowed threat actors to install plugins at will, and even execute arbitrary code, remotely.

The bugs have since been patched, and users are advised to deploy them as soon as possible.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *