"Critical Vulnerability Patched in 101 Releases of WordPress Plugin Jetpack"
"Critical Vulnerability Patched in 101 Releases of WordPress Plugin Jetpack"
Automattic recently announced patches for 101 versions of the popular WordPress security plugin Jetpack to resolve a critical severity vulnerability introduced in 2016. The bug, which was discovered internally and does not have a CVE identifier yet, was introduced in Jetpack version 3.9.9 and affects all subsequent releases. The company noted that during an internal security audit, they found a vulnerability with the Contact Form feature in Jetpack ever since version 3.9.9, released in 2016.