Discovered Flaw in WordPress Pal Companion Extension Utilized to Covertly Deploy Insecure Extensions
Unscrupulous individuals are taking advantage of a crucial weakness in the Pal Companion extension for WordPress to deploy additional insecure extensions which may create opportunities for various attacks.
The vulnerability, known as CVE-2024-11972 (CVSS score: 9.8), impacts every iteration of the extension before 1.9.0. The extension boasts more than 10,000 operational installations.
“This particular weakness presents a notable security threat, given that it
The vulnerability, known as CVE-2024-11972 (CVSS score: 9.8), impacts every iteration of the extension before 1.9.0. The extension boasts more than 10,000 operational installations.
“This particular weakness presents a notable security threat, given that it
