Another WordPress Plugin Has a Security Vulnerability Related to Usage of extract()

Discussion in 'other security issues & news' started by guest, Sep 29, 2021.

  1. guest

    guest Guest

    WordPress security: CookieYes GDPR plugin patches XSS bug following large-scale PHP audit
    Researchers claim five plugins use extract() function insecurely – but some maintainers disagree
    September 29, 2021

    https://portswigger.net/daily-swig/...tches-xss-bug-following-large-scale-php-audit
    Plugin Vulnerabilities: Another One of the 100 Most Popular WordPress Plugins Has a Security Vulnerability Related to Usage of extract()
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.