Vulnerability Bulletins

Is This Another Case of a Malicious Takeover of a WordPress Plugin?

   
Affected software Wordpress
 
https://www.pluginvulnerabilities.com/2017/10/16/is-this-another-case-of-a-malicious-takeover-of-a-wordpress-plugin/In our previous post we noted how we had found that the plugin Facebook Like Box had recently had a cross-site request forgery (CSRF) related vulnerability fixed. In looking over what else had recently been done with the plugin we noticed in the previous release one of the changelog entries was “Fixed Security Bugs”. Looking at the […]

More info:

https://www.pluginvulnerabilities.com/2017/10/16/is-this-another-case-of-a-malicious-takeover-of-a-wordpress-plugin/