The Webhook Automator and Contact Form Integration to Automate 280+ Platforms – Bit Integrations plugin for WordPress is vulnerable to Open Redirect in all versions up to, and including, 2.4.10. This is due to insufficient validation on a redirect url. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.
With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.
– Scott Cheney, Manager of Information Security, Sierra View Medical Center