live-composer / live-composer-page-builder

Free page builder plugin for WordPress https://livecomposerplugin.com
GNU General Public License v3.0
171 stars 57 forks source link

Page Builder: Live Composer <= 1.5.42 - Authenticated (Contributor+) PHP Object Injection #1135

Closed jamesdlow closed 4 months ago

jamesdlow commented 4 months ago

Please fix the remote code execution vulnerability as soon as possible: https://wpscan.com/vulnerability/3dcb0872-7b08-4128-ad13-664dde76648b/

Thank You

jamesdlow commented 4 months ago

I see there is a fix as of 1.5.43. Thank you!