Update the WordPress StopBadBots plugin to the latest available version (at least 6.60).
Martin Vierula (Trustwave) discovered and reported this SQL Injection vulnerability in WordPress StopBadBots Plugin. This could allow a malicious actor to directly interact with your database, including but not limited to stealing information and creating new administrator accounts. This vulnerability has been fixed in version 6.60.
Auth. Arbitrary Plugin Installation vulnerability
21.11.2022
WordPress Options Update vulnerability
21.03.2022
Unauthenticated SQL Injection (SQLi) vulnerability
16.03.2022
Unauthenticated SQL Injection (SQLi) vulnerability
07.03.2022
Unauthenticated SQL Injection (SQLi) vulnerability
15.11.2021