Jetpack fixes critical information disclosure flaw existing since 2016

Share:

WordPress plugin Jetpack released a critical security update earlier today, addressing a vulnerability that allowed a logged-in user to access forms submitted by other visitors to the site.

Jetpack is a popular WordPress plugin by Automattic that provides tools to enhance website functionality, security, and performance. According to the vendor, the plugin is installed on 27 million websites.

The issue was discovered during an internal audit and impacts all Jetpack versions since 3.9.9, released in 2016.

WordPress plugin Jetpack released a critical security update earlier today, addressing a vulnerability that allowed a logged-in user to access forms submitted by other visitors to the site.

Jetpack is a popular WordPress plugin by Automattic that provides tools to enhance website functionality, security, and performance. According to the vendor, the plugin is installed on 27 million websites.

The issue was discovered during an internal audit and impacts all Jetpack versions since 3.9.9, released in 2016.

Jetpack says there is no evidence that malicious actors exploited the flaw in its eight years of existence, but it advises users to upgrade to a patched release as soon as possible.

“We have no evidence that this vulnerability has been exploited in the wild. However, now that the update has been released, it is possible that someone will try to take advantage of this vulnerability,”  warned Jetpack.

Note that there are no mitigations or workarounds for this flaw, so applying the available updates is the only available and recommended solution.

Technical details about the flaw and how it can be exploited have been withheld for now to allow users some time to apply the security updates.

Bill Toulas

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
1:50 pm, Jun 26, 2025
weather icon 22°C
L: 22° | H: 24°
broken clouds
Humidity: 73 %
Pressure: 1011 mb
Wind: 14 mph SW
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 75%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:44 am
Sunset: 9:21 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
22° | 24°°C 0 mm 0% 17 mph 62 % 1018 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
17° | 28°°C 0 mm 0% 13 mph 62 % 1021 mb 0 mm/h
Sat Jun 28 10:00 pm
weather icon
17° | 28°°C 0.2 mm 20% 10 mph 88 % 1025 mb 0 mm/h
Sun Jun 29 10:00 pm
weather icon
19° | 32°°C 0 mm 0% 6 mph 82 % 1025 mb 0 mm/h
Mon Jun 30 10:00 pm
weather icon
21° | 34°°C 0.2 mm 20% 12 mph 59 % 1019 mb 0 mm/h
Today 4:00 pm
weather icon
23° | 23°°C 0 mm 0% 17 mph 62 % 1011 mb 0 mm/h
Today 7:00 pm
weather icon
22° | 22°°C 0 mm 0% 15 mph 46 % 1014 mb 0 mm/h
Today 10:00 pm
weather icon
17° | 17°°C 0 mm 0% 9 mph 48 % 1018 mb 0 mm/h
Tomorrow 1:00 am
weather icon
17° | 17°°C 0 mm 0% 8 mph 55 % 1020 mb 0 mm/h
Tomorrow 4:00 am
weather icon
17° | 17°°C 0 mm 0% 7 mph 62 % 1020 mb 0 mm/h
Tomorrow 7:00 am
weather icon
17° | 17°°C 0 mm 0% 7 mph 59 % 1020 mb 0 mm/h
Tomorrow 10:00 am
weather icon
22° | 22°°C 0 mm 0% 11 mph 52 % 1021 mb 0 mm/h
Tomorrow 1:00 pm
weather icon
26° | 26°°C 0 mm 0% 12 mph 46 % 1020 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€91,724.11
0.12%
Ethereum(ETH)
€2,093.00
0.94%
Tether(USDT)
€0.86
-0.02%
XRP(XRP)
€1.85
-1.21%
Solana(SOL)
€122.77
-1.70%
USDC(USDC)
€0.85
-0.01%
Dogecoin(DOGE)
€0.137910
-2.18%
Shiba Inu(SHIB)
€0.000009
-2.35%
Pepe(PEPE)
€0.000008
-6.76%
Scroll to Top