Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2021-23150: AMP for WP – Accelerated Mobile Pages

Authenticated (admin or higher user role) Stored Cross-Site Scripting (XSS) vulnerability discovered in AMP for WP – Accelerated Mobile Pages WordPress plugin (versions <= 1.0.77.31).

CVE
#xss#vulnerability#web#google#apache#git
  • Details
  • Reviews
  • Installation
  • Support
  • Development

AMP for WP automatically adds Accelerated Mobile Pages (Google AMP Project) functionality to your WordPress site. AMP makes your website faster for Mobile visitors.

What’s New in this Version? | Priority Support | View Demo | Screenshots | Community

Extensions
Some useful extensions to extend AMP features, check AMP Adsense Support, Contact Form 7 Support, Email Opt-in Support and Call To Action Support. To view more, go to our Extensions page.

Support
We try our best to provide support on WordPress.org forums. However, We have a special community support where you can ask us questions and get help about your AMP related questions. Delivering a good user experience means a lot to us and so we try our best to reply each and every question that gets asked.

Bug Reports
Bug reports for AMP for WP are welcomed on GitHub. Please note GitHub is not a support forum, and issues that aren’t properly qualified as bugs will be closed.

Features:

  • NEW – Gutenberg Support
  • NEW – Divi and Elementor Support More Info
  • NEW – GDPR Compliance
  • NEW – Google PageSpeed Optimization with SSR (Server Side Rendering)
  • NEW – CSS Optimization (Tree Shaking) – This will automatically remove all the unused CSS from your AMP pages
  • NEW – Google Font API and Local Fonts Support For All Designs
  • Out of the box compatibility for Yoast SEO, All in One Seo, Rank Math, Genesis, SEOPress, Bridge Qode SEO, The SEO Framework, SmartCrawl and Squrilly SEO Plugin.
  • Introducing Page Builder 3.0 for AMP! Learn More & Video
  • New Default Theme for AMP called Swift
  • 3 Pre-built AMP Layouts for Business websites and landing pages
  • OneSignal and TruePush Push Notifications integration
  • Advanced WooCommerce Support More Info
  • AMP Plugins Manager – Which allows you to disable a specific plugin functionality only in the AMP version
  • Structured Data Options
  • Page Break / NextPage (Pagination) Support
  • Contact Form 7 Support More Info
  • Graviry Form Support More Info
  • Caldera Form Support More Info
  • Ninja Form Support More Info
  • Facebook Comments Support
  • Github Gist Support
  • Email Opt-in Subscription form support in AMP added
  • Call to Action boxes and notification bars
  • 9 Advertisement sizes – 2 More AD slots added recently
  • Comments Forms in AMP.
  • Native AMP Search functionality.
  • Design 3 Watch the Video Overview
  • Disqus Comments Support
  • Vuukle Comments Support
  • Spot.IM Comments Support
  • Google Tag Manager Support
  • Page, Category & Tags Support Added
  • Custom AMP Editor – Which allows you to override your Content that you had written in Post or page, so you can add the different content just for AMP.
  • Mobile Redirection – More than 50% of your traffic is from mobile and you aren’t doing anything to improve their user experience, which means you are falling behind on SEO and it can result in lower SERPS. Lightning fast mobile version means faster User experience means more engagement which directly results in the lower bounce rate.
  • Custom Post Type Support
  • Custom Taxonomies Support
  • Star Ratings
  • Drag & Drop Page builder Added
  • 4 Designs for AMP
  • AMP WooCommerce Support
  • Switch on/off Support for Pages & Posts on AMP
  • Translation Panel & RTL
  • Internal AMP linking – You can browse AMP pages internally
  • Related posts below the post
  • Recent Comments list
  • Automatically integrate AMP to your website.
  • Google Adsense (AMP-AD) Support with 6 different Ad slots across the layout! The First Plugin to have this capability.
  • Built in MGID Ads Support with 6 different ad slots.
  • Google Analytics Support.
  • User Friendly Theme Options Panel.
  • Unlimited Color Scheme.
  • Image Logo Upload.
  • Supports Posts and Pages and other custom post types.
  • Proper rel canonical tags which means that Google know the original page.
  • Overlay Navigation Menu bar.
  • Social Sharing in the Single.
  • Sexy Design.
  • Separate WordPress Menu for AMP version.
  • Page builder & Shortcodes Compatibility.
  • Carousel support for Gallery.
  • Better Image stretching and resizing.
  • Youtube Video Embed Support.
  • Vine Embed Support.
  • Twitter oembed Support.
  • Instagram Embed Support.
  • Facebook Video Embed Support.
  • RTL Support
  • Custom AMP FrontPage
  • Notifications
  • Alexa Metrics, Chartbeat, Hi-stats, Yandex Metrika, Piwik, Segment.com, StatCounter, Effective Measure and comScore Builtin Support
  • Incontent & DoubleClick Support
  • Great Support & Active Development.
  • Widgets & WooCommerce
  • Breadcrumb Support added
  • Facebook Instant Articles Support Added
  • AMP Installation Wizard that makes it easy to setup for new users.
  • Category base remover support
  • Tag base remover support
  • Addthis Sharing Support
  • Infinite Scroll Support
  • Photo Gallery by 10Web Support
  • 12 New Social Media Integrations added (Reddit, Tumblr, Telegram, Digg, StumbleUpon, Wechat, Viber, Hatena Bookmarks, Pocket, Yummly, MeWe, Flipboard)
  • AMP Theme Framework Core Support Added. You can now create AMP templates of your own in just minutes. More
  • NEW – Make AMP & Non-AMP Same with just one click!
  • NEW – Allows you to use AMP as primary website!

JOIN CHAT GROUP COMMUNITY: Purpose of this group is to get proper suggestions and feedback from plugin users and the community so that we can make the plugin even better.

Getting Started:

1. User Documentation: The AMP for WordPress plugin is easy to setup but we have some tutorials and guides prepared for you which will help you dive deep with the plugin.

2. Developer Docs: We have created special documentations for developers and semi technical users who are willing to modify the plugin according to their own needs.

3. Support: We try our best to provide support on WordPress.org forums. However, We have a special community support where you can ask us questions and get help about your AMP related questions. Delivering a good user experience means a lot to us and so we try our best to reply each and every question that gets asked.

4. Premium Support: We will personally take care that your website’s AMP version is perfectly validated. We will make sure that your AMP version gets approved and indexed by Google Webmaster Tools properly and we will even keep an eye on AMP updates from Google and implement them into your website.

Credits

Some code used in this plugin was forked from ‘AMP for WordPress’ plugin https://wordpress.org/plugins/amp/ – License URI: http://www.gnu.org/licenses/gpl-2.0.html.
Mobile & Tablet detection library used https://github.com/serbanghita/Mobile-Detect – License URI: https://github.com/serbanghita/Mobile-Detect/blob/master/LICENSE.txt
PHP CSS Parser library used https://github.com/sabberworm/PHP-CSS-Parser – License URI: https://github.com/sabberworm/PHP-CSS-Parser#license (PHP-CSS-Parser is freely distributable under the terms of an MIT-style license.)
AMP Optimizer library used https://github.com/ampproject/amp-toolbox/tree/main/packages/optimizer – License URI: https://github.com/ampproject/amp-toolbox#license (AMP Toolbox is made by the AMP Project, and is licensed under the Apache License, Version 2.0.)

Visit Help area for the Documentation:

Visit Help area for the Documentation:

Can I add analytics?

Yes, you easily can. In fact, we have support for 12 Analytics companies. Including Google Analytics, Facebook Pixel, StatCounter, QuantCast, Chartbeat, comScore to list a few. Also, we have Google Tag Manager (GTM) support as well.

Can I add Ads in my AMP pages?

Yes, you can. We have 6 ad placement slots that are built in and strategically placed to get maximum views. Also, we have an extension from which you can insert ads between the content, will get more ad slots and also add custom banners to all the available slots.

Can I extend/Change the AMP design, so it suits my needs?

Yes, you easily can. We have created this plugin in such a way that it can easily be extended. Check out our AMP Theme Framework

Do you have any prebuilt designs?

Yes, we have AMP themes section where we have free and paid designs available. We also update it regularly. You can check it out our AMP Themes

I’m a developer and I want to add custom functionality for a client, can I do that?

Yes, of course. This plugin is very developer friendly, we have lots of hooks and filters that you can use to extend and customize according to the requirements. Also, we have developer documentation which we update regularly.

How do I report bugs and suggest new features?

You can report the bugs here

Will you Add New features to my request?

Yes, Absolutely! We would suggest you send your feature request by creating an issue in Github . It helps us organize the feedback easily.

How do I get in touch?

You can contact us from here

Cheaters, they offered the discount on their pricing page. But their discount disappeared in cart. i tried it many times, no discount was applied on my order. i contacted many times the support team, but every time they offers me 50% discount on new purchase to compensate, they are not ready to return my extra charged money. moreover, plugin is full of waste, because of their unprofessional services.

Read all 1,208 reviews

“AMP for WP – Accelerated Mobile Pages” is open source software. The following people have contributed to this plugin.

Contributors

1.0.77.38 (7th March 2022)

  • Improvements: Added The Publisher Desk Support #5213
  • Fixed: Displaying a blank white screen when embed URLs are used #5193

1.0.77.37.1 (4TH March 2022)
* Improvements: Added new infinite scrolling experience #4791
* Fixed: The links in embed URLs are not clickable #5193

1.0.77.37 (2nd March 2022)

  • Improvements: Added feedback form with auto email system #5223
  • Improvements: Added new infinite scrolling experience #4791
  • Improvements: Added An option to add lang_ and privacyMode values in Quantcast #5206
  • Improvements: Added FireWork compatibility #5210
  • Fixed: AMP autocomplete tag is not working #5217
  • Fixed: Autoplay functionality not working in video module #5219
  • Fixed: Fonts loading twice in Global font family #5220
  • Fixed: Unable to connect to Matomo analytics #5221

1.0.77.36 (18th February 2022)

  • Fixed: If the server-side cache is aggressive then the pagination URL with ?amp=1 is redirecting to non-AMP #5208
  • Fixed: Errror getting in featured-image.php, on line 77 #5207
  • Fixed: Need to keep the mobile redirection filter outside of any condition #5216

Full changelog available at changelog.txt

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907