SureTriggers Security Snafu: Thousands of WordPress Sites at Risk!
A major flaw in the WordPress plugin SureTriggers has left thousands of websites vulnerable to remote attacks. This flaw allows unauthorized users to create admin accounts, bypassing security checks due to a mishandled authorization process. Update your SureTriggers plugin immediately to avoid becoming a victim of this sneaky cyber sneak attack!

Hot Take:
Who knew the real “SureTrigger” was a surefire way to trigger a panic attack among WordPress admins? It seems that with the latest vulnerability, the plugin is more like “UnsureTriggers” – because who’s sure who’s really in charge of their website anymore?
Key Points:
- Critical vulnerability found in SureTriggers plugin for WordPress.
- Unauthenticated users can create admin accounts due to REST API mishandling.
- Flaw affects SureTriggers version 1.0.78 and below.
- The issue is due to improper validation of the ST-Authorization HTTP header.
- Admins urged to update the plugin and audit for suspicious activity.
Already a member? Log in here