Vulnerabilities

Stay ahead of the curve with our comprehensive coverage of WordPress plugin and theme vulnerabilities. Don’t let outdated software put your website at risk.

<

Cross Site Scripting (XSS) Vulnerability in Bus Ticket Booking with Seat Reservation Plugin

August 2, 2023

A Cross-Site Scripting (XSS) vulnerability has been identified in the WordPress Bus Ticket Booking with Seat Reservation plugin. This vulnerability could allow

Read more

Critical Privilege Escalation vulnerability in Stripe Payment Gateway for WooCommerce Plugin

August 2, 2023

A critical Privilege Escalation vulnerability has been identified in the widely-used Stripe Payment Gateway for WooCommerce Plugin. This vulnerability could allow an

Read more

Cross-Site Scripting (XSS) Vulnerability in PostX – Gutenberg Blocks for Post Grid Plugin

August 2, 2023

We want to draw attention to a high-severity Cross-Site Scripting (XSS) vulnerability discovered in the widely used PostX – Gutenberg Blocks for

Read more

High-severity Privilege Escalation vulnerability in WordPress Shop as a Customer for WooCommerce plugin

August 1, 2023

A Privilege Escalation vulnerability has been identified in the WordPress Shop as a Customer for WooCommerce plugin. This vulnerability could allow an

Read more

Critical arbitrary file upload vulnerability in WordPress Job Board and Recruitment Plugin – JobWP plugin

August 1, 2023

A critical Arbitrary File Upload vulnerability has been uncovered in the widely-used WordPress Job Board and Recruitment Plugin – JobWP Plugin. This

Read more

High-severity Broken Access Control Vulnerability in Booster for WooCommerce Plugin

August 1, 2023

A Broken Access Control vulnerability has been identified in the Booster for WooCommerce Plugin. This vulnerability could allow an attacker to gain

Read more

Critical arbitrary file upload vulnerability in WordPress Job Board and Recruitment Plugin

August 1, 2023

An arbitrary file upload vulnerability has been identified in the WordPress Job Board and Recruitment Plugin – JobWP plugin. The Arbitrary File

Read more

Medium-severity Cross-Site Scripting (XSS) vulnerability in WordPress Simple Blog Card plugin

August 1, 2023

A Cross-Site Scripting (XSS) vulnerability has been identified in the WordPress Simple Blog Card plugin. This vulnerability could allow an attacker to

Read more

Immediate Action Required for Media from FTP Plugin

August 1, 2023

A Broken Access Control vulnerability has been identified in the WordPress Media from FTP plugin. This vulnerability could allow an unprivileged user

Read more

SQL Injection Vulnerability in TI WooCommerce Wishlist Plugin

July 31, 2023

A critical SQL Injection vulnerability has been identified in the TI WooCommerce Wishlist Plugin. This vulnerability could allow an attacker to execute

Read more

High-Severity SQL Injection Vulnerability in WPML String Translation Plugin

July 27, 2023

WordPress security should always be a top priority, especially when it comes to plugin vulnerabilities. Recently, a high-severity SQL Injection vulnerability has

Read more

High-Severity XSS Vulnerability in WPCode Plugin

July 27, 2023

A high-severity Cross-Site Scripting (XSS) vulnerability in the WPCode plugin for WordPress has been discovered by Erwan LR (WPScan), bringing attention to

Read more

Critical SQL Injection Vulnerability Found in WordPress WP Database Administrator Plugin

July 27, 2023

WordPress website owners should take immediate action to address a critical SQL Injection vulnerability in the WP Database Administrator Plugin. This security

Read more

Critical BAC vulnerability in WordPress InstaWP Connect Plugin

July 27, 2023

WordPress website owners must take immediate action to address a critical Broken Access Control vulnerability in the InstaWP Connect Plugin. This security

Read more

Critical XSS vulnerability in Molongui Plugin

July 26, 2023

WordPress website owners should be aware of a high severity Cross-Site Scripting (XSS) vulnerability identified in the Molongui Plugin. This security flaw

Read more