Stay up to date with WordPress Security

<

Broken Access Control vulnerability in WordPress All-in-One WP Migration Dropbox Extension Plugin

August 30, 2023

A Broken Access Control vulnerability has been identified in the WordPress All-in-One WP Migration Dropbox Extension Plugin. This vulnerability allows an unprivileged

Read more

Broken Access Control vulnerability in WordPress All-in-One WP Migration Google Drive Extension Plugin

August 30, 2023

 At the core of our concerns lies WordPress security and the identification of potential plugin vulnerabilities. Today, we are sounding the alarm

Read more

Cross-Site Scripting (XSS) vulnerability in WordPress Social Media & Share Icons Plugin

August 29, 2023

A Cross-Site Scripting (XSS) vulnerability has been identified in the WordPress Social Media & Share Icons Plugin. This vulnerability allows an attacker

Read more

Arbitrary File Upload vulnerability in WordPress Forminator Plugin

August 29, 2023

An Arbitrary File Upload vulnerability has been identified in the WordPress Forminator Plugin. This vulnerability allows an attacker to upload any type

Read more

Cross-Site Scripting (XSS) vulnerability in WordPress Happy Elementor Addons Pro Plugin

August 29, 2023

A Cross-Site Scripting (XSS) vulnerability has been identified in the WordPress Happy Elementor Addons Pro Plugin. This vulnerability allows an attacker to

Read more

Cross-Site Scripting (XSS) vulnerability in WordPress Bridge Core Plugin

August 29, 2023

A Cross-Site Scripting (XSS) vulnerability has been identified in the WordPress Bridge Core Plugin. This vulnerability allows an attacker to inject malicious

Read more

Arbitrary File Upload vulnerability in WordPress Olive One Click Demo Import Plugin

August 28, 2023

An Arbitrary File Upload vulnerability has been identified in the WordPress Olive One Click Demo Import Plugin. This vulnerability allows an attacker

Read more

Broken Access Control vulnerability in WordPress Premmerce User Roles Plugin

August 24, 2023

A Broken Access Control vulnerability has been identified in the WordPress Premmerce User Roles Plugin. This vulnerability allows an unprivileged user to

Read more

Arbitrary Code Execution vulnerability in WordPress Kanban Boards for WordPress Plugin

August 17, 2023

An Arbitrary Code Execution vulnerability has been identified in the WordPress Kanban Boards for WordPress Plugin. This vulnerability allows an attacker to

Read more

How to Remove Injected Spam Pages from Google Search

August 16, 2023

In today’s digital world, it is more important than ever to maintain a clean and reputable online presence. However, cyber threats like

Read more

A Step-by-Step Guide to Detecting and Removing the Japanese Keywords Hack

August 14, 2023

In recent months, we have seen a sharp rise in the number of WordPress websites that have been infected with Japanese keywords

Read more

SQL Injection vulnerability in WordPress Demon image annotation Plugin

August 10, 2023

An SQL Injection vulnerability has been identified in the WordPress Demon image annotation Plugin. This vulnerability allows an attacker to inject malicious

Read more

Cross-Site Scripting (XSS) vulnerability in Online Booking & Scheduling Calendar Plugin

August 10, 2023

A Cross-Site Scripting (XSS) vulnerability has been identified in the WordPress Online Booking & Scheduling Calendar for WordPress by vcita Plugin. This

Read more

Remote File Inclusion vulnerability in WordPress Canto Plugin

August 9, 2023

A Remote File Inclusion (RFI) vulnerability has been identified in the WordPress Canto Plugin. This vulnerability allows an attacker to get a

Read more

Cross-Site Scripting (XSS) vulnerability in WordPress Leyka Plugin

August 7, 2023

A high-severity vulnerability has been identified in the WordPress Leyka Plugin. This vulnerability allows an attacker to inject malicious scripts into the

Read more