Author Topic: Outdated CMS version, plug-ins, retirable jQuery library and other issues.  (Read 791 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33913
  • malware fighter
See: Version does not appear to be latest 4.9.5 - update now.
Quote
The following plugins were detected by reading the HTML source of the WordPress sites front page.

autoptimize 2.3.2   latest release (2.3.4) Update required
https://autoptimize.com/
footer   
kk-star-ratings 2.6   latest release (2.6)
https://github.com/kamalkhan/kk-star-ratings
a3-lazy-load 1.8.6   latest release (1.8.7) Update required
same-category-posts 1.1.0   latest release (1.1.0)
https://wordpress.org/plugins/same-category-posts/
instagram-feed   latest release (1.8)
https://smashballoon.com/instagram-feed
wordpress-seo 7.1   latest release (7.2) Update required
https://yoa.st/1uj
caldera-forms 1.5.9.1   latest release (1.6.0) Update required
https://
Plugins are a source of many security vulnerabilities within WordPress installations, always keep them updated to the latest version available and check the developers plugin page for information about security related updates and fixes.

Vulnerable: https://retire.insecurity.today/#!/scan/a22332055d102dcd7b2c4312fcda3ec3b7cc9443396c7b6f9bce3ada7a9fbb1b

Quote
Security Checks for https://silvergate.co.il/
Susceptible to man-in-the-middle attacks
SSL not available
Vulnerabilities can be uncovered more easily
X-Powered-By header exposed
Vulnerable to cross-site attacks
HttpOnly cookies not used
Emails can be fraudulently sent
SPF not enabled

polonus (volunteer website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!