WordPress plugin exposes half a million sites to attack



    A popular WordPress plugin used by more than a million websites all over the world has been found to be carrying a critical remote code execution (RCE) flaw that allowed potential malicious actors to perform a local file inclusion attack.

    Cbersecurity researcher Wai Yan Muo Thet discovered the vulnerability in the Essential Addons for Elementor plugin on January 25, 2022, and reported it to Patchstack the same day. 



    Source link

    Previous articleApple Watch saves man’s life after hard fall from an electric bike
    Next articleJamf Holding: Revisit This Old Friend And Apple Collaborator