Discovered Flaw in WordPress Pal Companion Extension Utilized to Covertly Deploy Insecure Extensions

Unscrupulous individuals are taking advantage of a crucial weakness in the Pal Companion extension for WordPress to deploy additional insecure extensions which may create opportunities for various attacks.

Unscrupulous individuals are taking advantage of a crucial weakness in the Pal Companion extension for WordPress to deploy additional insecure extensions which may create opportunities for various attacks.
The vulnerability, known as CVE-2024-11972 (CVSS score: 9.8), impacts every iteration of the extension before 1.9.0. The extension boasts more than 10,000 operational installations.
“This particular weakness presents a notable security threat, given that it

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.