'; } else{ echo ''; } echo '
|
|
|||
Release Date:2025/9/15
Rule Name:CVE-2025-3102:WordPress Plugin SureTriggers Authorization Bypass Vulnerability
Severity:high
CVE ID:CVE-2025-3102
| Descripiton:
|
WordPress and WordPress plugin are both products of the WordPress Foundation. WordPress is a blogging platform developed in the PHP language. This platform supports the setup of personal blog websites on servers running PHP and MySQL. A WordPress plugin is an application plugin. There is a security vulnerability in WordPress plugin SureTriggers version 1.0.78 and earlier. This vulnerability stems from authentication bypass, which may lead to the creation of administrator accounts. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
| Solution:
|
Update vendor patches.