Wordpress Plugin Vulnerability Hunting
projectblack.io | vulnerability | #vulnerability-research | #wordpress | #sast | #cve | #plugins | #semgrep
Summary
How 14 CVE-worthy flaws were found in WordPress plugins in three Sunday afternoons: bulk-download plugins via the WordPress API, scan with Semgrep's PHP ruleset, and triage findings in a SQL database.
- Published
- Collected
Skip to content