Oct. 13, 2023, 9:44 p.m. | Chloe Chamberland

Wordfence www.wordfence.com

Today, on October 13, 2023, the Wordfence Threat Intelligence Team became aware of a vulnerability that was recently patched in Royal Elementor Addons and Templates, a WordPress plugin installed on over 200,000 sites, that makes it possible for unauthenticated attackers to upload arbitrary files to vulnerable sites. This allows unauthenticated attackers to upload PHP files ...
Read More


The post PSA: Critical Unauthenticated Arbitrary File Upload Vulnerability in Royal Elementor Addons and Templates Being Actively Exploited appeared first on Wordfence …

actively exploited attackers aware critical exploited file files file upload intelligence october plugin psa royal team threat threat intelligence today unauthenticated upload vulnerabilities vulnerability wordfence wordpress wordpress plugin wordpress security

More from www.wordfence.com / Wordfence

Senior Security Engineer - Detection and Response

@ Fastly, Inc. | US (Remote)

Application Security Engineer

@ Solidigm | Zapopan, Mexico

Defensive Cyber Operations Engineer-Mid

@ ISYS Technologies | Aurora, CO, United States

Manager, Information Security GRC

@ OneTrust | Atlanta, Georgia

Senior Information Security Analyst | IAM

@ EBANX | Curitiba or São Paulo

Senior Information Security Engineer, Cloud Vulnerability Research

@ Google | New York City, USA; New York, USA