☄️☄️ A new integration for the LnkBio newsletter: FluentCRM: automatically sync leads collected on your linkinbio page to FluentCRM on WordPress
https://lnk.bio/linkin/fluentcrm-newsletter-integration-for-lnkbio
☄️☄️ A new integration for the LnkBio newsletter: FluentCRM: automatically sync leads collected on your linkinbio page to FluentCRM on WordPress
https://lnk.bio/linkin/fluentcrm-newsletter-integration-for-lnkbio
After initial mishandling of my vulnerability report, WPManageNinja did the right things: started a vulnerability disclosure program, partnered up with Patchstack, and hired a WordPress security consultant. They even launched a bug-bounty program.
https://fluentcrm.com/security-and-vulnerability-disclosure-program/
Responsible disclosure of unpatched vulnerability CVE-2023-1430 in FluentCRM by WPManageNinja (with mitigation patch): https://github.com/karlemilnikka/CVE-2023-1430.
tl;dr Attackers can view and edit contact details in FluentCRM. WPManageNinja hasn’t patched the vulnerability within the 90-day responsible disclosure time window. I provide a mitigation snippet to prevent vulnerability exploitation while waiting for an official patch.
@Jordankettner @cloudflare
Great list, mine is:
#RankMath #elementor #fluentcrm