• youenn35

    (@youenn35)


    SecuPress Pro failed to detect or address a site infected due to CVE-2023-40000. Over 70 files were corrupted, with a script tag added to wp-config.php, and SecuPress flagged nothing. It also ignored dozens of POST requests to the /wp-json/litespeed/v1/cdn_status endpoint. To be fair, the plugin was installed after the infection, so it might have prevented it initially—but I wouldn’t recommend relying on this plugin.

Viewing 1 replies (of 1 total)
Viewing 1 replies (of 1 total)
  • You must be logged in to reply to this review.