[wp-trac] [WordPress Trac] #58367: BUG REPORT XML Attacker

WordPress Trac noreply at wordpress.org
Sun May 21 09:17:09 UTC 2023


#58367: BUG REPORT XML Attacker
--------------------------+-----------------------------
 Reporter:  lakarprana    |      Owner:  (none)
     Type:  defect (bug)  |     Status:  new
 Priority:  normal        |  Milestone:  Awaiting Review
Component:  General       |    Version:  trunk
 Severity:  critical      |   Keywords:  needs-testing
  Focuses:                |
--------------------------+-----------------------------
 Hi admin,
 Lets me introduce, my name is lakar prana
 From indonesia
 I'm here to report that I've found a bug on the wordpress.org site vuln :
 wordpress.org/xmlrpc.php
 impact : DDoS attack. Hackers will use WordPress' pingback feature to send
 pingbacks to thousands of sites in an instant.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/58367>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list