WordPress-Plugin Import Export WordPress Users vulnerable

The WordPress plugin 'Import Export WordPress Users' is used on over 30,000 websites, but contains a vulnerability in older versions. The vulnerability, discovered on February 26, allowed anyone with access at subscriber level or higher to import new users via a CSV file, including users at administrative level. An update of the plugin closes the vulnerability – more details can be found in this WordFence article.  


Advertising

This entry was posted in Security, Software, Update and tagged , . Bookmark the permalink.

Leave a Reply

Your email address will not be published. Required fields are marked *

Note: Please note the rules for commenting on the blog (first comments and linked posts end up in moderation, I release them every few hours, I rigorously delete SEO posts/SPAM).