Tech

Critical security flaw could leave over 100,000 WordPress sites at risk

Share
Share


  • A flaw in TI WooCommerce Wishlist allows threat actors to upload arbitrary files
  • Since the files can be malicious, they could fully take over a website
  • A patch is not yet released, so users should take care

A critical-severity vulnerability in a popular WordPress plugin is possibly exposing hundreds of thousands of websites to different risks, including complete website takeover.

Security researchers from Patchstack have claimed TI WooCommerce Wishlist carried an arbitrary file upload flaw, which allowed actors to upload malicious files to the underlying server without authentication.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
As Google retreats from real estate, will it still build the 15,000 homes it promised?
Tech

As Google retreats from real estate, will it still build the 15,000 homes it promised?

Credit: Unsplash/CC0 Public Domain When Google made its $1 billion pledge to...

It’s part of a troubling trend in big tech
Tech

It’s part of a troubling trend in big tech

Credit: Unsplash/CC0 Public Domain Google recently unveiled the next phase of its...