Automattic, the company behind the WordPress CMS, has forcibly updated the popular Jetpack plugin on…
Let me remind you that we also wrote that 1.2 million WordPress site owners were affected by the GoDaddy data breach, and information security specialists also reported that Hackers Scanned 1.6 Million WordPress Sites Looking for a Vulnerable Plugin.
With nearly 5 million installations, Jetpack provides users with free security, performance, and site management features, including brute-force protection, backup, secure login, and malware scanning. Automattic itself created and maintained the plugin.
The patch was included in Jetpack 12.1.1 and this version was automatically distributed to all WordPress sites using the plugin. According to official statistics, the rollout of the update has already been successfully completed, and most sites are now automatically updated to the latest secure version.
Automattic engineers warn that although no signs of exploitation of the vulnerability have been found, attackers are likely to learn the details of the problem soon and create exploits to attack unpatched sites.
News-xbuhoxu.store is a domain that tries to force you into subscribing to its browser notifications…
News-xbadeyo.today is a site that tries to force you into clik to its browser notifications…
News-bbutohu.info is a site that tries to trick you into clik to its browser notifications…
News-bbucoxe.today is a domain that tries to force you into clik to its browser notifications…
News-xdetake.cc is a domain that tries to force you into clik to its browser notifications…
News-bbufiya.today is a domain that tries to force you into subscribing to its browser notifications…