PageLayer Plugin (WordPress) Update
2804Warning Date
Severity Level
Warning Number
Target Sector
29 May, 2020
● High
2020-1286
All
Description:
Wordfence has released security update to address multiple vulnerabilities in the following plugin:
- Page Builder: PageLayer – Drag and Drop website builder
- Version 1.1.1 and earlier
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Update and modify posts with malicious content.
- Cross-site request forgery (CSRF).
Best practice and Recommendations:
The CERT team encourages users to review Wordfence security advisory and apply the necessary updates: