ThemeREX Addons Plugin (WordPress) Update
3327Warning Date
Severity Level
Warning Number
Target Sector
10 March, 2020
● Critical
2020-1001
All
Description:
WordPress has released security update to address vulnerabilities in the following products:
- ThemeREX Addons Plugin
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Cross-site scripting (XSS) attack
- Cross-site request forgery (CSRF)
- Execute arbitrary code remotely
Best practice and Recommendations:
The CERT team encourages users to review WordPress security advisory and apply the necessary update: