Limit Login Attempts Vulnerability – Patch Now!

On April 11th, 2023, a software update was released to patch a severe vulnerability within the Limit Login Attempts WordPress security plugin. With over 600,000 installations, it’s among the most popular WordPress plugins in use to help prevent unauthorized access to administrator dashboards. In an ironic twist, this vulnerability may allow attackers to do just the opposite as this could allow for unauthenticated hostile takeovers of websites.

We recommend that users patch to version 1.7.2 as soon as possible to help prevent website compromise.

Continue reading Limit Login Attempts Vulnerability – Patch Now! at Sucuri Blog.

More great articles

WordPress Vulnerability & Patch Roundup July 2023

Vulnerability reports and responsible disclosures are essential for website security awareness and education. Automated attacks targeting known software vulnerabilities are…

Read Story

Critical Arbitrary File Upload Vulnerability Patched in wpDiscuz Plugin

On June 19th, our Threat Intelligence team discovered a vulnerability present in Comments – wpDiscuz, a WordPress plugin installed on…

Read Story

Arbitrary User Password Change Vulnerability in LearnDash LMS WordPress Plugin

On June 5, 2023, our Wordfence Threat Intelligence team identified, and began the responsible disclosure process, for an Arbitrary User…

Read Story

Emergency WordPress Help

One of our techs will get back to you within minutes.