1 link tagged with all of: vulnerability + acl-extended + wordpress + admin-access
Click any tag below to further narrow down your results
Links
A severe vulnerability in the ACF Extended plugin allows unauthenticated attackers to gain admin permissions on WordPress sites. Exploitation hinges on a flaw in the user creation and update forms, which fail to enforce role restrictions. Approximately 50,000 sites remain at risk despite a patch released shortly after the issue was identified.