WordPress Plugin Vulnerabilities

KingComposer < 2.9.4 - Multiple Critical Issues

Description

Jerome Bruandet, from nintechnet, discovered multiple issues such as authenticated WordPress options change, content injection, stored Cross-Site Scripting (XSS), arbitrary file deletion and remote code execution.

Affects Plugins

Fixed in 2.9.4

References

Miscellaneous

Original Researcher
Jerome Bruandet (nintechnet)
Verified
No

Timeline

Publicly Published
2020-06-15 (about 5 years ago)
Added
2020-06-15 (about 5 years ago)
Last Updated
2023-06-08 (about 2 years ago)

Other