Get the latest tech news

Cyber security agency warns this WordPress widget might leak data


A Wordpress crypto widget used by thousands could contain a security vulnerability that could leak data to potential attackers.

The security warning applies to versions 2.0 to 2.6.5 and, according to the CSA, centers around “insufficient escaping on the user-supplied parameter and lack of sufficient preparation on the existing SQL query”. The CSA warns that this WordPress widget could potentially allow unauthorized users to add extra SQL queries, with the risk of extracting sensitive information from a website’s database. As well as writing, she also has experience in editing as the UK Editor of The Mary Sue, as well as speaking on the important of SEO in journalism at the Student Press Association National Conference.

Get the Android app

Or read this on ReadWrite

Read more on:

Photo of WordPress

WordPress

Photo of data

data

Photo of WordPress widget

WordPress widget

Related news:

News photo

Researchers at the University of Minnesota designed a microfluidic integrated circuit to perform complex operations through artificial neural network computations on data stored in DNA

News photo

Hackers steal data of 2 million in SQL injection, XSS attacks

News photo

Mozilla’s new service tries to wipe your data off the web