https://www.pluginvulnerabilities.com/2017/06/26/cross-site-request-forgery-csrfarbitrary-file-upload-vulnerability-in-newsletters/

We recently have been trying to get an idea of how effective it would be to try to proactively catch some vulnerabilities when changes are made to WordPress plugins that include those vulnerabilities. Seeing as arbitrary file upload vulnerabilities are at the top in terms of exploits that seems like one area where it might make sense to focus on,

Share This