pleskuser67553
Regular Pleskian
- Server operating system version
- AlmaLinux 9.8 (Olive Jaguar)
- Plesk version and microupdate number
- Plesk Obsidian 18.0.80 Update #7
I have a WordPress site on a server which I thought was vulnerable, yet WP Toolkit is giving it an overall 0.1 Security Risk, so I've been going about my other business with a false sense of security. Other external tools have since reconfirmed its critically vulnerable status
patchstack.com
I have tried:

By the way, LayerSlider WP is also being reported with a 6.4 CVE on Wordfence https://www.wordfence.com/threat-in...cated-contributor-stored-cross-site-scripting

Local File Inclusion in WordPress RT-Theme 18 | Extensions Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress and Drupal security issues.
I have tried:
- Scanning the site for malware with Imunify and Wordfence - no malware
- Verifying the WordPress core checksums - all green
- Detaching, deleting .wp-toolkit-ignore and rescanning for the affected site
plesk ext wp-toolkit --clear-wpt-cache
By the way, LayerSlider WP is also being reported with a 6.4 CVE on Wordfence https://www.wordfence.com/threat-in...cated-contributor-stored-cross-site-scripting
