Over 10 years we help companies reach their financial and branding goals. Engitech is a values-driven technology agency dedicated.

Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

A high-severity authorization flaw in the LeadConnector WordPress plugin (versions before 3.0.22) allows any unauthenticated user to call a protected REST API endpoint and overwrite plugin data without credentials. CISA has added this to its Known Exploited Vulnerabilities catalog, indicating active exploitation in the wild. Organizations running LeadConnector on customer-facing WordPress sites face immediate risk of data manipulation, lead record corruption, and potential follow-on compromise of CRM-connected systems.

Author

Tech Jacks Solutions