Alarming WordPress Security Vulnerabilities

beNi released 3 alarming vulnerabilities in the popular WordPress blog platform

  1. Cross Site Scripting – it didn’t work for me
  2. Forced Redirectit worked for me
  3. Directory Traversal – n /a

Due to the really huge install base, I really hope that the folks at wordpress.org issue a patch quickly to address these vulnerabilities. Update : It sems that the site hosting the proof of concept exploits is down for maintenance.(thanks leion)



Thank you for reading this post. You can now Read Comment (1) or Leave A Trackback. Print This Post Print This Post

One Response to “Alarming WordPress Security Vulnerabilities


Subscribe without commenting


Leave a Reply

Note: Any comments are permitted only because the site owner is letting you post, and any comments will be removed for any reason at the absolute discretion of the site owner.