Monthly Archives: June 2014

MODX Evo AjaxSearch Vulnerability

Issue: The AjaxSearch component distributed with all versions of MODX Evolution (and 0.9.x) contains a vulnerability that allows remote code execution.

Resolved: Deleted index-ajax.php and removed AjaxSearch plugin and snippets.