A vulnerability advisory was published for the NotificationX FOMO plugin for WordPress and WooCommerce sites, affecting more than 40,000 websites. The vulnerability, which is rated at a 7.2 (High) severity level, enables unauthenticated attackers to inject malicious JavaScript that can execute in a visitor’s browser when specific conditions are met. NotificationX – FOMO Plugin The […]
WordPress Advanced Custom Fields Extended Plugin Vulnerability
An advisory was published about a vulnerability in the popular Advanced Custom Fields: Extended WordPress plugin that is rated 9.8, affecting up to 100,000 installations. The flaw enables unauthenticated attackers to register themselves with administrator privileges and gain full control of a website and all settings. Advanced Custom Fields: Extended Plugin The Advanced Custom Fields: […]