WordPress.org

Ready to get started?Download WordPress

Forums

Embedded Video
WARNING!!! This plugin will get your site hacked!! (2 posts)

  1. kaylward
    Member
    Posted 3 years ago #

    Now that a new cross site scripting (XSS) vulnerability has been documented for this plugin, it's nearly certain that if you leave it installed you will eventually be hit. It's no longer supported by the author. There are other similar plugins. Switch to one that's actively maintained immediately.

    http://packetstormsecurity.org/files/view/96787/evwp-xss.txt

    http://seclists.org/bugtraq/2010/Dec/190

  2. henrisalo
    Member
    Posted 2 years ago #

    If I contribute patch is it possible that maintainer will add it or can WordPress developers do this?

Topic Closed

This topic has been closed to new replies.

About this Plugin

About this Topic