Critical WordPress Plugin Flaw Makes 400K Sites Vulnerable To Attack
Researchers have found serious vulnerabilities in three WordPress plugins that have been installed on 400,000 websites — leaving them wide open for cyberattacks. The bugs have been found inInfiniteWP, WP Time Capsule,andWP Database Resetplugins. These are similar types of authorization bypass bugs that allow anyone to access the backend of a website without passwords. InfiniteWP Client This plugin is the most severely affected by the authentication bypass vulnerability and more than 300,000 websites have InfiniteWP Client installed on them....