Page Builder by SiteOrigin (WordPress) Update
2723Warning Date
Severity Level
Warning Number
Target Sector
12 May, 2020
● High
2020-1223
All
Description:
Wordfence has released security update to address a vulnerability in the following plugin:
- Page Builder by SiteOrigin
- Version 2.10.15 and earlier
Threats:
Attacker could exploit this vulnerability by doing the following:
- Stored cross-site scripting (XSS) attack.
- Cross-site request forgery (CSRF).
Best practice and Recommendations:
The CERT team encourages users to review Wordfence security advisory and apply the necessary updates: