in

Vulnerable Plugin Exploited in Spam Redirect Campaign (blog.sucuri.net)

Vulnerable Plugin Exploited in Spam Redirect Campaign

Some weeks ago a critical unauthenticated privilege escalation vulnerability was discovered in old, unpatched versions of the wp-user-avatar plugin. It also allows for arbitrary file uploads, which is where we have been seeing the infections start.

Leave a Reply

Flywheel vs SiteGround - Which Offers the Best WordPress Hosting?

Flywheel vs SiteGround – Which Offers the Best WordPress Hosting? (winningwp.com)

Severe Vulnerability Patched In WooCommerce Currency Switcher

Severe Vulnerability Patched In WooCommerce Currency Switcher (jetpack.com)