Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Wordpress Plugin Vulnerability Hunting

Summary

How 14 CVE-worthy flaws were found in WordPress plugins in three Sunday afternoons: bulk-download plugins via the WordPress API, scan with Semgrep's PHP ruleset, and triage findings in a SQL database.
Published
Collected

original ↗

Related coverage

back