[wp-hackers] CSRF vulnerability in WP HTML Sitemap 1.2 (WordPress plugin)

Varun Agrawal varun at varunagw.com
Fri Mar 28 16:06:22 UTC 2014


Hi Harry,

>It was my assumption that this list would be interested to know about vulnerable plugins.

There must be hundreds or thousands of plugin with security issues. I
don't think everybody will be interested to know vulnerabilities in
them.


>we are disclosing the vulnerability in order that anyone using this plugin can take steps to protect themselves.

I guess most of the user of the plugin are not going to read this.


-Varun


More information about the wp-hackers mailing list