July 3, 2024

Watch Out Wednesday – July 3, 2024

Plugin: Auto Featured Image Vulnerability: Authenticated (Contributor+) Arbitrary File UploadPatched Version: n/aRecommended Action: No known patch available. Please review the vulnerability’s details in depth and employ mitigations based on your organization’s risk tolerance. It may be best to uninstall the affected software and find a replacement. Plugin: Elementor Addon Elements Vulnerability: Authenticated (Contributor+) Stored Cross-Site […]

Watch Out Wednesday – July 3, 2024 Read More »

Watch Out Wednesday – July 3, 2024

Plugin: Auto Featured Image Vulnerability: Authenticated (Contributor+) Arbitrary File UploadPatched Version: n/aRecommended Action: No known patch available. Please review the vulnerability’s details in depth and employ mitigations based on your organization’s risk tolerance. It may be best to uninstall the affected software and find a replacement. Plugin: Elementor Addon Elements Vulnerability: Authenticated (Contributor+) Stored Cross-Site

Watch Out Wednesday – July 3, 2024 Read More »

Watch Out Wednesday – July 3, 2024

Plugin: Auto Featured Image Vulnerability: Authenticated (Contributor+) Arbitrary File UploadPatched Version: n/aRecommended Action: No known patch available. Please review the vulnerability’s details in depth and employ mitigations based on your organization’s risk tolerance. It may be best to uninstall the affected software and find a replacement. Plugin: Elementor Addon Elements Vulnerability: Authenticated (Contributor+) Stored Cross-Site

Watch Out Wednesday – July 3, 2024 Read More »

Watch Out Wednesday – June 26, 2024

Plugin: User Profile Picture Vulnerability: Authenticated (Author+) Insecure Direct Object Reference to Profile Picture UpdatePatched Version: 2.6.2Recommended Action: Update to version 2.6.2, or a newer patched version Plugin: ContentLock Vulnerability: Cross-Site Request Forgery to Group/Email DeletionPatched Version: n/aRecommended Action: No known patch available. Please review the vulnerability’s details in depth and employ mitigations based on

Watch Out Wednesday – June 26, 2024 Read More »