Failles de sécurité Plugins WordPress semaine 25

Failles de sécurité Plugins WordPress semaine 25

Author: WP Serveur

Date: June 18, 2020 

Category: Security

WPServeur vous informe des dernières failles de sécurité plugins et thèmes WordPress connues.

Plugins WordPress :

Testimonial Rotator < 3.0.3 - Authenticated Stored Cross-Site Scripting (XSS) KingComposer < 2.9.4 - Multiple Critical Issues Brizy - Page Builder < 1.0.126 - Improper Access Controls on AJAX Calls SportsPress < 2.7.2 - Authenticated Stored Cross-Site Scripting Elementor Page Builder < 2.9.10 - Authenticated Stored XSS AdRotate < 5.8.4 - Authenticated SQL Injection JobSearch < 1.5.1 - Unauthenticated Reflected Cross-Site Scripting (XSS)

Thèmes WordPress :

Careerfy < 3.9.0 - Unauthenticated Reflected Cross-Site Scripting (XSS) Newspaper < 10.3.4 - Authenticated Reflected Cross-Site Scripting Avada

This is the first part of the article “Failles de sécurité Plugins WordPress semaine 25“
written by WP Serveur.