Collected every two hours from specialised publications — each link leads to the original article.
WordPress 6.9.9 Security Release Security updates included in this release Unauthenticated path traversal in page-template resolution leading to conditional RC…
WordPress 6.9.9 Security Release Security updates included in this release Unauthenticated path traversal in page-template resolution leading to conditional RC…
Several vulnerabilities were discovered in wordpress, a web blogging tool, which could result in cross-site scripting, privilege escalation or remote code exec…
Fedora has released WordPress version 6.9.7, addressing multiple security vulnerabilities, including remote code execution and stored cross-site scripting issu…
Fedora released WordPress version 6.9.7, addressing multiple security vulnerabilities, including remote code execution, various XSS issues, privilege escalatio…
Cybersecurity researchers have flagged a global cybercrime operation that abuses thousands of hacked WordPress websites as infrastructure to disseminate malwar…
A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to ach…
Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) p…
Fedora 43 has released WordPress version 6.9.5, addressing security vulnerabilities including SQL injection and remote code execution issues. Users can update …
WordPress 6.9.5 and 7.0.2 fix wp2shell, a core REST API bug chaining route confusion and SQL injection into unauthenticated remote code execution.wp2shell: Wor…
A SQL injection vulnerability was found in WordPress, prompting an important update to version 6.8.6+dfsg1-0+deb13u1 for the stable Debian distribution.
Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack after unknown threat actors managed to tamper with the official release …
Upstream announcements: WordPress 6.9.2 Release WordPress 6.9.3 and 7.0 beta 4 WordPress 6.9.4 Release
Upstream announcements: WordPress 6.9.2 Release WordPress 6.9.3 and 7.0 beta 4 WordPress 6.9.4 Release
Multiple security issues were discovered in the WordPress blogging tool, which could result in cross-site scripting or information disclosure. For the stable d…
Multiple security issues were discovered in the WordPress blogging tool, which could result in cross-site scripting or information disclosure. For the oldstabl…
A critical security flaw impacting a WordPress plugin known as King Addons for Elementor has come under active exploitation in the wild.The vulnerability, CVE-…
Several security vulnerabilities have been discovered in Wordpress, a popular content management framework. CVE-2024-6307
A financially motivated threat actor codenamed UNC5142 has been observed abusing blockchain smart contracts as a way to facilitate the distribution of informat…
WordPress 6.8.3 Release Security updates included in this release: A data exposure issue where authenticated users could access some restricted content. Indepe…
A new large-scale campaign has been observed exploiting over 100 compromised WordPress sites to direct site visitors to fake CAPTCHA verification pages that em…
WordPress admins need to update their websites with the latest Post SMTP plugin release, as…Post SMTP Plugin Flaw Risked 400K+ WordPress Sites To Hijacking on …
Alright, Linux admins and security pros, let's talk WordPress . I know''typically, "WordPress" doesn't top the list of thrilling topics in our corner of the te…
Cybersecurity researchers have disclosed a critical unpatched security flaw impacting TI WooCommerce Wishlist plugin for WordPress that could be exploited by u…