• Resolved dutchmanjack

    (@dutchmanjack)


    Hi, I‘m logging Security-related traffic on my website in Wordfence. Today, I noticed two Blocks by the firewall. One of them was for Social Warfare <= 3.5.2 – Unauthenticated Stored Cross-Site Scripting in query string: swp_url=https%3A%2F%2Fhastebin.com%2Fraw%2Fetonipusij

    In the log under Tools>Live Traffic, Wordfence also shows the url to my Domain with this query string. I clicked this url by mistake and an empty window appeared. Did I do something wrong here or is my website not affected by this action What happens if I click on this url?

Viewing 4 replies - 1 through 4 (of 4 total)
  • Hey @dutchmanjack,

    The Wordfence Firewall has blocked this attack. The site wasn’t affected by you clicking the link. If you’re using the Social Warfare plugin I would suggest that you’re up to date. If you’re not, then it’s just Wordfence doing its job. There’s only so much we can do to prevent attacks, it’s more about making sure they aren’t successful.

    Thanks,

    Gerroald

    Thread Starter dutchmanjack

    (@dutchmanjack)

    Hi @wfgerald,

    thanks for the answer. I’m not using the Social Warfare plugin. Wordfence worked fine by blocking it from the outside, but I was just wondering if I could do anything wrong to my website if I click this link as an admin from the wordpress backend.

    Thanks, Jack

    • This reply was modified 4 years, 12 months ago by dutchmanjack.

    Hey @dutchmanjack,

    Thanks for the update.

    You can’t do any harm to the site by clicking the link. Wordfence is just reporting the attack vector link.

    Please do let me know if you have any other questions.

    Thanks,

    Gerroald

    Thread Starter dutchmanjack

    (@dutchmanjack)

    Thanks @wfgerald !

Viewing 4 replies - 1 through 4 (of 4 total)
  • The topic ‘What does clicking the url in the blocking-log do?’ is closed to new replies.