Get the latest tech news
Cyber security agency warns this WordPress widget might leak data
A Wordpress crypto widget used by thousands could contain a security vulnerability that could leak data to potential attackers.
The security warning applies to versions 2.0 to 2.6.5 and, according to the CSA, centers around “insufficient escaping on the user-supplied parameter and lack of sufficient preparation on the existing SQL query”. The CSA warns that this WordPress widget could potentially allow unauthorized users to add extra SQL queries, with the risk of extracting sensitive information from a website’s database. As well as writing, she also has experience in editing as the UK Editor of The Mary Sue, as well as speaking on the important of SEO in journalism at the Student Press Association National Conference.
Or read this on ReadWrite