April 5, 2024, 3:02 p.m. | István Márton

Wordfence www.wordfence.com

On February 1st, 2024, during our Bug Bounty Extravaganza, we received a submission for an Arbitrary File Upload vulnerability in Management App for WooCommerce, a WordPress plugin with 1,000+ active installations. This vulnerability makes it possible for authenticated users such as subscribers and customers to upload arbitrary files to a vulnerable site and achieve remote ...
Read More


The post $657 Bounty Awarded for Arbitrary File Upload Patched in WEmanage App Worker WordPress Plugin appeared first on Wordfence.

app bounty bug bug bounty customers february file file upload management plugin research submission subscribers upload vulnerabilities vulnerability woocommerce wordpress wordpress plugin wordpress security worker

More from www.wordfence.com / Wordfence

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC