Site icon API Security Blog

Essential Blocks < 4.4.3 – Unauthenticated Local File Inclusion

Description The plugin does not prevent unauthenticated attackers from overwriting local variables when rendering templates over the REST API, which may lead to Local File Inclusion attacks. PoC The PoC will be displayed on January 04, 2024, to give users the time to…Read More

Exit mobile version