NewsBlur is currently exploitable

According to SSL Labs "NewsBlur is vulnerable to the OpenSSL CCS vulnerability (CVE-2014-0224) and exploitable. "

https://www.ssllabs.com/ssltest/analy…

If this is correct, please patch for the safety of your users.

1 Like

I just patched both OpenSSL and re-issued new certs a couple months ago. Something must be off here.