Stay up to date with WordPress Security

<

SQL Injection Vulnerability in TI WooCommerce Wishlist Plugin

July 31, 2023

A critical SQL Injection vulnerability has been identified in the TI WooCommerce Wishlist Plugin. This vulnerability could allow an attacker to execute

Read more

High-Severity SQL Injection Vulnerability in WPML String Translation Plugin

July 27, 2023

WordPress security should always be a top priority, especially when it comes to plugin vulnerabilities. Recently, a high-severity SQL Injection vulnerability has

Read more

High-Severity XSS Vulnerability in WPCode Plugin

July 27, 2023

A high-severity Cross-Site Scripting (XSS) vulnerability in the WPCode plugin for WordPress has been discovered by Erwan LR (WPScan), bringing attention to

Read more

Critical SQL Injection Vulnerability Found in WordPress WP Database Administrator Plugin

July 27, 2023

WordPress website owners should take immediate action to address a critical SQL Injection vulnerability in the WP Database Administrator Plugin. This security

Read more

Critical BAC vulnerability in WordPress InstaWP Connect Plugin

July 27, 2023

WordPress website owners must take immediate action to address a critical Broken Access Control vulnerability in the InstaWP Connect Plugin. This security

Read more

Critical XSS vulnerability in Molongui Plugin

July 26, 2023

WordPress website owners should be aware of a high severity Cross-Site Scripting (XSS) vulnerability identified in the Molongui Plugin. This security flaw

Read more

Critical XSS vulnerability in User Email Verification for WooCommerce Plugin

July 26, 2023

WordPress website owners using the User Email Verification for WooCommerce Plugin: A high severity Cross-Site Scripting (XSS) vulnerability has been identified, posing

Read more

High severity Cross-Site Scripting (XSS) vulnerability in JobWP Plugin

July 26, 2023

Attention WordPress website owners using the Job Board and Recruitment Plugin – JobWP Plugin: A high severity Cross-Site Scripting (XSS) vulnerability has

Read more

High-Severity XSS Vulnerability in AGP Font Awesome Collection Plugin

July 26, 2023

WordPress security remains a top priority as websites are frequently targeted by malicious actors exploiting vulnerabilities in plugins. In a recent discovery,

Read more

Critical Remote Code Execution (RCE) vulnerability in PHP Everywhere plugin

July 26, 2023

A critical Remote Code Execution (RCE) vulnerability has been identified in the PHP Everywhere plugin. This vulnerability could allow an attacker to

Read more

Cross-Site Request Forgery (CSRF) Vulnerability Found in WordPress tagDiv Composer Plugin

July 25, 2023

WordPress website administrators should be aware of a high severity Cross-Site Request Forgery (CSRF) vulnerability detected in the tagDiv Composer Plugin. This

Read more

Urgent Action Needed for Quasar Form Plugin

July 24, 2023

WordPress website owners using the Quasar Form plugin: An alarming high-severity SQL Injection vulnerability has been detected, posing significant risks to the

Read more

Urgent Action Required for Custom Field Template Plugin

July 24, 2023

Attention WordPress website owners using the Custom Field Template plugin: A high-severity Cross-Site Scripting (XSS) vulnerability has been identified, posing significant risks

Read more

Critical Broken Access Control Vulnerability in Convert Pro Plugin

July 21, 2023

WordPress website owners using the Convert Pro plugin are urged to take immediate action to address a critical Broken Access Control vulnerability,

Read more

High-severity Arbitrary File Download vulnerability in JupiterX Core plugin

July 20, 2023

Attention WordPress website owners using the JupiterX Core plugin: A high-severity Arbitrary File Download vulnerability has been identified, posing significant risks to

Read more