Skip to content

is this a false flag? #1958

@ghost

Description

I'm getting errors due to <!--more--> in wp posts

[Sun Nov 18 04:30:37.019265 2018] [:error] [pid 14349:tid 139857951188736] [client 35.227.27.105:61766] [client 35.227.27.105] ModSecurity: Warning. Matched phrase "<!--" at ARGS:data[wp_autosave][content]. [file "/etc/modsecurity/rules/REQUEST-941-APPLICATION-ATTACK-XSS.conf"] [line "286"] [id "941180"] [rev "2"] [msg "Node-Validator Blacklist Keywords"] [data "Matched Data: <!-- found within ARGS:data[wp_autosave][content]: marketing operates in a world of change and ambiguity. so you have to constantly monitor trends, to spot opportunities, and avoid problems. now spending on your market, this could be one of your biggest challenges. you don't want to be guilty of missing a key trend that puts your company out of business. trends in your business happen in many areas. for example, consumer tastes can change. campbell soup, for example, is looking at ways to c..."] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-xss"] [tag "OWASP_CRS/WEB_ATTACK/XSS"] [tag "WASCTC/WASC-8"] [tag "WASCTC/WASC-22"] [tag "OWASP_TOP_10/A3"] [tag "OWASP_AppSensor/IE1"] [tag "CAPEC-242" [hostname "mywebsite.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "W-Dq7UgOvEAAADgNEI4AAAAB"], referer: https://mywebsite.com/wp-admin/post.php?post=276&action=edit

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions