- Joined
- Jun 14, 2004
- Posts
- 11,075
- Reaction score
- 960
Check if you are using this:
There is a serious privilege escalation vulnerability in the MainWP Child WordPress plugin. This plugin has over 90,000 active installs. The vulnerability allows an attacker to log into a vulnerable website bypassing the password authentication mechanism that WordPress provides.
What to do: Upgrade immediately to version 2.0.9.2 which was released last Friday and fixes this specific issue.
We have seen less than 10,000 downloads of this plugin since the fix was released and WordPress.org estimates 90,000 active installs are out there, so please help spread the word to the rest of the WordPress community about this issue.
Regards,
Mark Maunder
Wordfence Founder & CEO