Membership is FREE – with unlimited access to all features, tools, and discussions. Premium accounts get benefits like banner ads and newsletter exposure. ✅ Signature links are now free for all. 🚫 No AI-generated (LLM) posts allowed. Share your own thoughts and experience — accounts may be terminated for violations.

MainWP Child WordPress plugin security alert

Status
Not open for further replies.

AdminAdmin is verified member.

Administrator
Acorn Staff
Nominet Registrar
Joined
Jun 14, 2004
Posts
11,108
Reaction score
987
Check if you are using this:

There is a serious privilege escalation vulnerability in the MainWP Child WordPress plugin. This plugin has over 90,000 active installs. The vulnerability allows an attacker to log into a vulnerable website bypassing the password authentication mechanism that WordPress provides.

What to do: Upgrade immediately to version 2.0.9.2 which was released last Friday and fixes this specific issue.

We have seen less than 10,000 downloads of this plugin since the fix was released and WordPress.org estimates 90,000 active installs are out there, so please help spread the word to the rest of the WordPress community about this issue.
Regards,

Mark Maunder
Wordfence Founder & CEO
 
Status
Not open for further replies.
General chit-chat
Help Users
  • No one is chatting at the moment.
      Helmuts @ HelmutsHelmuts is verified member.: Good morning all
      Top Bottom