Description

WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors is prone to cloaking. The plugin is inserting links to websites into page content, hidden to the site owner, that would only show up when Google or another search engine crawled the site. WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors version 2.2.9 is affected; prior versions may also be affected.

Remediation

Update to plugin version 2.3.0 or latest

References

Related Vulnerabilities

Severity

High

Tags

Missing Update