<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>Wordpress Archives - Coin Engineer</title>
	<atom:link href="https://coinengineer.net/blog/tag/wordpress/feed/" rel="self" type="application/rss+xml" />
	<link>https://coinengineer.net/blog/tag/wordpress/</link>
	<description>Btc, Coins, Pre-Sale, DeFi, NFT</description>
	<lastBuildDate>Fri, 09 Feb 2024 07:40:03 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://coinengineer.net/blog/wp-content/uploads/2024/04/cropped-Coin-Engineer-Logo-Favicon-2-32x32.png</url>
	<title>Wordpress Archives - Coin Engineer</title>
	<link>https://coinengineer.net/blog/tag/wordpress/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>WordPress Crypto Plugin Causes Vulnerability</title>
		<link>https://coinengineer.net/blog/wordpress-crypto-plugin-causes-vulnerability/</link>
					<comments>https://coinengineer.net/blog/wordpress-crypto-plugin-causes-vulnerability/#respond</comments>
		
		<dc:creator><![CDATA[Tanju Akbıyık]]></dc:creator>
		<pubDate>Fri, 09 Feb 2024 07:32:23 +0000</pubDate>
				<category><![CDATA[Crypto News]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[cryptocurrencies]]></category>
		<category><![CDATA[Wordpress]]></category>
		<guid isPermaLink="false">https://coinengineer.io/blog/?p=11470</guid>

					<description><![CDATA[<p>A vulnerability in a WordPress plugin designed for cryptocurrency widgets has raised concerns over the potential leakage of sensitive information.  Warns About Plugins Safety (WordPress) The plugin in question, &#8220;Cryptocurrency Widgets – Price Ticker &#38; Coins List,&#8221; has been identified by the Cyber Security Agency of Singapore (CSA) as carrying a critical vulnerability across versions</p>
<p>The post <a href="https://coinengineer.net/blog/wordpress-crypto-plugin-causes-vulnerability/">WordPress Crypto Plugin Causes Vulnerability</a> appeared first on <a href="https://coinengineer.net/blog">Coin Engineer</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p><span style="font-weight: 400;">A vulnerability in a WordPress plugin designed for <a href="https://coinengineer.net/blog/thailand-exempts-cryptocurrencies-from-value-added-tax/">cryptocurrency</a> widgets has raised concerns over the potential leakage of sensitive information. </span></p>
<h2><span style="font-size: 75%;">Warns About Plugins Safety (WordPress)</span></h2>
<p><span style="font-weight: 400;">The plugin in question, &#8220;Cryptocurrency Widgets – Price Ticker &amp; Coins List,&#8221; has been identified by the Cyber Security Agency of Singapore (CSA) as carrying a critical vulnerability across versions 2.0 through 2.6.5.</span></p>
<p><span style="font-weight: 400;">SingCERT, the Singapore Cyber Emergency Response Team, issued a security bulletin warning about the plugin&#8217;s susceptibility to exploitation. Rated at a base score of 9.8 out of 10 by the National Vulnerability Database (NVD), the plugin&#8217;s vulnerability lies in its handling of user-supplied parameters. Specifically, the &#8216;coinslist&#8217; parameter is vulnerable to SQL injection attacks due to insufficient escaping and preparation on existing SQL queries.</span></p>
<p><span style="font-weight: 400;">This SQL injection vulnerability enables attackers to extract sensitive information from the database by injecting additional SQL queries, even without authentication. The plugin, attributed to a vendor named &#8220;Narinder-Singh,&#8221; has been identified as problematic in versions 2.0 through 2.6.5 by the security firm CVE Program.</span></p>
<hr />
<div>
<div>
<div>
<div>
<div>
<div class="darkmysite_style_txt_border darkmysite_processed" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)">
<div class="darkmysite_style_txt_border darkmysite_processed" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)">
<p class="darkmysite_style_txt_border darkmysite_processed" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)"><em class="darkmysite_style_txt_border darkmysite_processed" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)">Also, you can freely share your thoughts and comments about the topic in the comment section. Additionally, please follow us on our <a class="darkmysite_style_txt_border darkmysite_style_link darkmysite_processed" href="https://t.me/coinengineernews" target="_blank" rel="noreferrer noopener" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)"><strong class="darkmysite_style_txt_border darkmysite_processed" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)">Telegram</strong>, </a><a class="darkmysite_style_txt_border darkmysite_style_link darkmysite_processed" href="https://www.youtube.com/@CoinEngineer" target="_blank" rel="noreferrer noopener" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)"><strong class="darkmysite_style_txt_border darkmysite_processed" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)">YouTube </strong></a>and <a class="darkmysite_style_txt_border darkmysite_style_link darkmysite_processed" href="https://twitter.com/coinengineers" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)"><strong class="darkmysite_style_txt_border darkmysite_processed" data-darkmysite_alpha_bg="rgba(0, 0, 0, 0)">Twitter</strong></a> channels for the latest news and updates.</em></p>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p>The post <a href="https://coinengineer.net/blog/wordpress-crypto-plugin-causes-vulnerability/">WordPress Crypto Plugin Causes Vulnerability</a> appeared first on <a href="https://coinengineer.net/blog">Coin Engineer</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://coinengineer.net/blog/wordpress-crypto-plugin-causes-vulnerability/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url='https://coinengineer.net/blog/wp-content/uploads/2024/01/1-3.jpg' type='image/webp' medium='image' width='1920' height='1080'><media:title type='plain'> <![CDATA[USA]]></media:title><media:thumbnail url='https://coinengineer.net/blog/wp-content/uploads/2024/01/1-3.jpg' width='58' height='33' /></media:content>	</item>
	</channel>
</rss>
