An SQL injection vulnerability in Ally, a WordPress plugin from Elementor for web accessibility and usability with more than 400,000 installations, could be exploited to steal sensitive data without authentication.

  • MonkderVierte@lemmy.zip
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    3 days ago

    Eh, the usual critical Wordpress plugin vuln.

    Please, guys; if you don’t write a blog, use any other framework matching your usecase. Wordpress plugins are no good.