Public Vulnerability notification – false alarm?
-
Hi there,
I’ve been notified by an anti-malware service that BuddyPress is using a vulnerable version of PHP Mailer, indicating the below file:
/wp-content/plugins/buddypress/bp-core/classes/class-bp-phpmailer.php
and referencing the below CVE’s:
RCE : CVE-2016-10045, CVE-2016-10031Can you confirm if this is a false alarm so I can bring this to the attention of the anti-malware developers.
Viewing 4 replies - 1 through 4 (of 4 total)
Viewing 4 replies - 1 through 4 (of 4 total)
- You must be logged in to reply to this topic.