Alerts
Events
DCR
Explore Cyware Products
Alerts
Events
DCR
Go to listing page
Unpatched WordPress Plugin Code-Injection Bug Afflicts 50K Sites
Malware and Vulnerabilities
February 06, 2021
Threat Post
A security vulnerability in the Contact Form 7 Style, a WordPress plugin installed on over 50,000 websites, could allow for malicious JavaScript injection on a victim website.
Read More
WordPress
Plugin
Contact Form 7 Style
Cross-Site Request Forgery Flaw
stored cross-site scripting vulnerability
Publisher
Previous
SolarWinds CEO Confirms Office 365 Email ‘Compromise’ P ...
Incident Response, Learnings
Next
Google Firebase hosts Microsoft Office phishing attack
Threat Intel & Info Sharing