Real-Time Find and Replace Plugin (WordPress) Update
2724Warning Date
Severity Level
Warning Number
Target Sector
28 April, 2020
● High
2020-1180
All
Description:
Wordfence has released security update to address a vulnerability in the following plugin:
- Real-Time Find and Replace
- Version 3.9 and earlier
Threats:
Attacker could exploit this vulnerability by doing the following:
- Cross-site scripting (XSS) attack.
- Cross-site request forgery (CSRF).
Best practice and Recommendations:
The CERT team encourages users to review Wordfence security advisory and apply the necessary updates: