Vulnerabilities

Stay ahead of the curve with our comprehensive coverage of WordPress plugin and theme vulnerabilities. Don’t let outdated software put your website at risk.

<

Mitigating XSS Vulnerability in WP Mail Log Plugin

July 12, 2023

A critical Cross-Site Scripting (XSS) vulnerability has been uncovered in the WP Mail Log plugin for WordPress. This security flaw enables attackers

Read more

Critical Security Vulnerability in All In One WP Security & Firewall Plugin

July 12, 2023

The All In One WP Security & Firewall Plugin, installed on over one million WordPress sites, recently discovered a security flaw in

Read more

Critical XSS Vulnerability in Variation Swatches for WooCommerce Plugin

July 12, 2023

A critical cross-site scripting (XSS) vulnerability has been discovered in the Variation Swatches for WooCommerce plugin for WordPress. This security flaw allows

Read more

Addressing High-Severity XSS Vulnerability in Variation Images Gallery for WooCommerce Plugin

July 12, 2023

A high-severity Cross-Site Scripting (XSS) vulnerability has been identified in the Variation Images Gallery for WooCommerce Plugin, urging WordPress website owners to

Read more

Addressing High-Severity SQL Injection Vulnerability in User Activity Log Plugin

July 12, 2023

A high-severity SQL injection vulnerability has been identified in the WordPress User Activity Log Plugin version 7.6. The discovery and responsible disclosure

Read more

High-Severity XSS Vulnerability in WordPress Twittee Text Tweet Plugin

July 12, 2023

A high-severity Cross-Site Scripting (XSS) vulnerability has been discovered in the WordPress Twittee Text Tweet Plugin version 7.1. This critical flaw was

Read more

Critical XSS vulnerability in Radio Forge Muses Player with Skins Plugin

July 12, 2023

A critical cross-site scripting (XSS) vulnerability has been identified in the Radio Forge Muses Player with Skins Plugin for WordPress. The vulnerability

Read more

Post SMTP Mailer/Email Log Plugin to Address XSS Vulnerability

July 12, 2023

A serious Cross-Site Scripting (XSS) vulnerability has been uncovered in version 7.1 of the WordPress Post SMTP Mailer/Email Log plugin, demanding immediate

Read more

Broken Access Control Vulnerability in WordPress Integrate Google Drive Plugin

July 12, 2023

An alarming Broken Access Control vulnerability has been identified in version 9.8 of the WordPress Integrate Google Drive Plugin, calling for urgent

Read more

High-Severity XSS Vulnerability Found in Coming Soon Chop Chop Plugin

July 12, 2023

A high-severity Cross-Site Scripting (XSS) vulnerability has been unearthed in version 7.1 of the Coming Soon Chop Chop Plugin, warranting immediate attention

Read more

High-Severity XSS Vulnerability in Mail Control Plugin

July 11, 2023

A critical Cross-Site Scripting (XSS) vulnerability has been discovered in the Mail Control plugin, highlighting the need for vigilance in WordPress security

Read more

Mitigating High-Severity XSS Vulnerability in WooCommerce Ship to Multiple Addresses Plugin

July 10, 2023

A critical Cross-Site Scripting (XSS) vulnerability has been identified in the WooCommerce Ship to Multiple Addresses plugin, underscoring the importance of WordPress

Read more

High-Severity IDOR Vulnerability in WooCommerce GoCardless Gateway Plugin

July 10, 2023

An Insecure Direct Object Reference (IDOR) vulnerability has been uncovered in the WooCommerce GoCardless Gateway plugin, raising concerns over WordPress security and

Read more

High-Severity Broken Access Control Vulnerability in WooCommerce Warranty Requests Plugin

July 10, 2023

A critical Broken Access Control vulnerability has been discovered in the WooCommerce Warranty Requests plugin, posing significant risks to WordPress security and

Read more

High-Severity XSS Vulnerability in WPForo Forum Plugin

July 6, 2023

A critical Cross-Site Scripting (XSS) vulnerability has been identified in the WPForo Forum Plugin for WordPress, posing significant risks to WordPress security

Read more