Collected every two hours from specialised publications — each link leads to the original article.
Cybersecurity researchers have shed light on a new campaign targeting WordPress sites that disguises the malware as a security plugin.The plugin, which goes by…
Keeping WordPress secure can be challenging, especially when considering Linux security concerns in a typical LAMP stack setup. Most WordPress security issues …
Did you know that 43.1% of websites on the Internet run on WordPress, according to W3Techs? Most WordPress websites run on Linux servers, which makes them prim…
Wordfence security researchers recently shed light on an infamous supply chain attack that may have affected as many as 36,000 WordPress websites. Five widely …
A now-removed GitHub repository that advertised a WordPress tool to publish posts to the online content management system (CMS) is estimated to have enabled th…
Multiple critical vulnerabilities existed in the WordPress plugin Spam protection, Anti-Spam, FireWall. Exploiting these vulnerabilities…Anti-Spam WordPress Pl…
Heads up, WordPress admins! The WordPress plugin Really Simple Security had a serious security flaw.…Really Simple Security Plugin Flaw Risks 4+ Million WordPr…
A critical authentication bypass vulnerability has been disclosed in the Really Simple Security (formerly Really Simple SSL) plugin for WordPress that, if succ…
A high-severity security flaw has been disclosed in the LiteSpeed Cache plugin for WordPress that could allow an unauthenticated threat actor to elevate their …
Heads up, WordPress admins! It’s time to update your websites with the latest Jetpack release…Critical Vulnerability Patched In Jetpack WordPress Plugin on Lat…
The maintainers of the Jetpack WordPress plugin have released a security update to remediate a critical vulnerability that could allow logged-in users to acces…
A new high-severity security flaw has been disclosed in the LiteSpeed Cache plugin for WordPress that could enable malicious actors to execute arbitrary JavaSc…
Cybersecurity researchers have discovered yet another critical security flaw in the LiteSpeed Cache plugin for WordPress that could allow unauthenticated users…
WordPress admins should once again update their websites to receive plugin updates, particularly if they…WPML WP Plugin Vulnerability Risked 1M+ WordPress Webs…
WordPress admins using the Litespeed Cache plugin must update their sites with the latest plugin…LiteSpeed Cache Plugin Vulnerability Risked 5+ Million WordPre…
A maximum-severity security flaw has been disclosed in the WordPress GiveWP donation and fundraising plugin that exposes more than 100,000 websites to remote c…
WordPress admins running the Modern Events Calendar plugin on their websites must rush to update…Vulnerability In Modern Events Calendar WordPress Plugin Activ…
WordPress admins must update their websites with the latest ProfileGrid plugin release. A severe privilege…ProfileGrid WordPress Plugin Vulnerability Could All…
Heads up, WordPress admins! Researchers ask WordPress users to update their sites with the latest…Patch These Compromised WordPress Plugins Asap To Avoid Attac…
Wordfence security researchers recently shed light on an infamous supply chain attack that may have affected as many as 36,000 WordPress websites. Five widely …
Researchers uncovered a new wave of malware attacks against WordPress websites, exploiting known XSS vulnerabilities…XSS Flaws In Multiple WordPress Plugins Ex…
Heads up WordPress admins. If you’ve been running Dessky Snippets plugin on your WordPress e-stores,…Dessky Snippets WordPress Plugin Exploited For Card Skimmi…
Cybersecurity researchers have warned that multiple high-severity security vulnerabilities in WordPress plugins are being actively exploited by threat actors t…
Several security vulnerabilities have been discovered in Wordpress, a popular content management framework, which may lead to exposure of sensitive information…