Stay up to date with WordPress Security

<

Cross-Site Scripting (XSS) vulnerability in WordPress Awesome Weather Widget Plugin

September 14, 2023

A Cross-Site Scripting (XSS) vulnerability has been identified in the WordPress Awesome Weather Widget Plugin. This vulnerability could allow a malicious actor

Read more

Privilege Escalation vulnerability in WordPress BAN Users Plugin

September 13, 2023

A Privilege Escalation vulnerability has been identified in the WordPress BAN Users Plugin. This vulnerability could allow a malicious actor to escalate

Read more

Insecure Direct Object References (IDOR) vulnerability in WordPress Simplr Registration Form Plus+ Plugin

September 13, 2023

An Insecure Direct Object References (IDOR) vulnerability has been identified in the WordPress Simplr Registration Form Plus+ Plugin. This vulnerability could allow

Read more

Cross-Site Request Forgery (CSRF) vulnerability in WordPress Login with phone number Plugin

September 13, 2023

A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the WordPress Login with phone number Plugin. This vulnerability could allow a

Read more

Local File Inclusion vulnerability in WordPress Dropbox Folder Share Plugin

September 13, 2023

A Local File Inclusion vulnerability has been identified in the WordPress Dropbox Folder Share Plugin. This vulnerability could allow a malicious actor

Read more

Cross-Site Request Forgery (CSRF) vulnerability in WordPress File Manager Pro Plugin

September 13, 2023

A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the WordPress File Manager Pro Plugin. This vulnerability could allow a malicious

Read more

SQL Injection vulnerability in WordPress WooCommerce Beta Tester Plugin

September 13, 2023

An SQL Injection vulnerability has been identified in the WordPress WooCommerce Beta Tester Plugin. This vulnerability could allow a malicious actor to

Read more

PHP Object Injection vulnerability in WordPress Read More & Accordion Plugin

September 13, 2023

A PHP Object Injection vulnerability has been identified in the WordPress Read More & Accordion Plugin. This vulnerability could allow a malicious

Read more

Privilege Escalation vulnerability in WordPress ProfilePress Plugin

September 12, 2023

A Privilege Escalation vulnerability has been identified in the WordPress ProfilePress Plugin. This vulnerability could allow a malicious actor with low privileges

Read more

Privilege Escalation vulnerability in WordPress MasterStudy LMS Plugin

September 12, 2023

A high-severity vulnerability has been identified in the WordPress MasterStudy LMS Plugin. This vulnerability could allow a malicious actor with low privileges

Read more

SQL Injection vulnerability in WordPress Slimstat Analytics Plugin

September 11, 2023

A SQL Injection vulnerability has been identified in the WordPress Slimstat Analytics plugin. This vulnerability could allow a malicious actor to directly

Read more

Arbitrary File Upload vulnerability in WordPress My Account Page Editor for WooCommerce Plugin

September 8, 2023

An Arbitrary File Upload vulnerability has been identified in the WordPress My Account Page Editor for WooCommerce Plugin. This vulnerability allows an

Read more

Arbitrary File Upload vulnerability in WordPress Form Maker by 10Web Plugin

September 7, 2023

An Arbitrary File Upload vulnerability has been identified in the WordPress Form Maker by 10Web Plugin. This vulnerability allows an attacker to

Read more

Cross-Site Scripting (XSS) vulnerability in WordPress Locatoraid Store Locator Plugin

September 6, 2023

A Cross-Site Scripting (XSS) vulnerability has been identified in the WordPress Locatoraid Store Locator Plugin. This vulnerability could allow an attacker to

Read more

Remote Code Execution (RCE) vulnerability in WordPress Media Library Assistant Plugin

September 6, 2023

A Remote Code Execution (RCE) vulnerability has been identified in the WordPress Media Library Assistant Plugin. This vulnerability could allow an attacker

Read more