A critical authentication bypass vulnerability in the Burst Statistics WordPress plugin is currently being exploited by attackers to achieve complete site takeover via administrator impersonation. Developers and site administrators must update to version 3.4.2 immediately to fix the flawed return-value handling that allows unauthenticated REST API requests to escalate privileges. With over 112,800 exploit attempts already blocked, security teams should urgently audit logs for unauthorized user creation and specific headers used in these automated attacks.
Read the full article at Malware Analysis, News and Indicators - Latest topics
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.





