Hosting • Web • Marketing

Ocean Extra <= 2.2.4 – 6.4 vulnerability

The CourseVector team is always busy with our managed hosting services, regularly fixing issues to keep our clients’ websites secure and efficient. Recently, we resolved a vulnerability in the Ocean Extra plugin (CVE-2024-1277), which involved stored cross-site scripting (XSS) through custom fields in versions up to 2.2.4. This flaw allowed users with contributor-level access to inject harmful scripts. By addressing such vulnerabilities promptly, we ensure our clients’ sites remain protected and inform them of our ongoing efforts to maintain their online safety and performance.

Happy Holidays!

With the holiday season upon us our staff will be taking some time to relax and enjoy time with their families.

We may be a bit slower to respond during this period. If you haven’t gotten a response within 24 hours during our normal business hours, please use our support request form and indicate it is an emergency and someone will get back to you quickly.

 

Search

Sign Up for Our Newsletter

Thank you for your interest in our newsletter! Fill in the form below to receive periodic updates on internet and website security, free cybersecurity posters, WordPress news, and more!

"*" indicates required fields

Name*

Your privacy is important to us. We do not share your information with anyone. You can opt out of our newsletter at any time.

Stay up to date with technology, scams, WordPress, and more. Follow CourseVector on Facebook today!