Collected every two hours from specialised publications — each link leads to the original article.
WordPress 6.9.9 Security Release Security updates included in this release Unauthenticated path traversal in page-template resolution leading to conditional RC…
WordPress 6.9.9 Security Release Security updates included in this release Unauthenticated path traversal in page-template resolution leading to conditional RC…
Several vulnerabilities were discovered in wordpress, a web blogging tool, which could result in cross-site scripting, privilege escalation or remote code exec…
Fedora has released WordPress version 6.9.7, addressing multiple security vulnerabilities, including remote code execution and stored cross-site scripting issu…
Fedora released WordPress version 6.9.7, addressing multiple security vulnerabilities, including remote code execution, various XSS issues, privilege escalatio…
A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to ach…
Fedora 43 has released WordPress version 6.9.5, addressing security vulnerabilities including SQL injection and remote code execution issues. Users can update …
WordPress 6.9.5 and 7.0.2 fix wp2shell, a core REST API bug chaining route confusion and SQL injection into unauthenticated remote code execution.wp2shell: Wor…
A SQL injection vulnerability was found in WordPress, prompting an important update to version 6.8.6+dfsg1-0+deb13u1 for the stable Debian distribution.
Multiple security issues were discovered in the WordPress blogging tool, which could result in cross-site scripting or information disclosure. For the stable d…
A critical security flaw impacting a WordPress plugin known as King Addons for Elementor has come under active exploitation in the wild.The vulnerability, CVE-…
Several security vulnerabilities have been discovered in Wordpress, a popular content management framework. CVE-2024-6307
WordPress 6.8.3 Release Security updates included in this release: A data exposure issue where authenticated users could access some restricted content. Indepe…
A new large-scale campaign has been observed exploiting over 100 compromised WordPress sites to direct site visitors to fake CAPTCHA verification pages that em…
WordPress admins need to update their websites with the latest Post SMTP plugin release, as…Post SMTP Plugin Flaw Risked 400K+ WordPress Sites To Hijacking on …
Alright, Linux admins and security pros, let's talk WordPress . I know''typically, "WordPress" doesn't top the list of thrilling topics in our corner of the te…
Cybersecurity researchers have disclosed a critical unpatched security flaw impacting TI WooCommerce Wishlist plugin for WordPress that could be exploited by u…
Keeping WordPress secure can be challenging, especially when considering Linux security concerns in a typical LAMP stack setup. Most WordPress security issues …
A now-removed GitHub repository that advertised a WordPress tool to publish posts to the online content management system (CMS) is estimated to have enabled th…
Multiple critical vulnerabilities existed in the WordPress plugin Spam protection, Anti-Spam, FireWall. Exploiting these vulnerabilities…Anti-Spam WordPress Pl…
Heads up, WordPress admins! The WordPress plugin Really Simple Security had a serious security flaw.…Really Simple Security Plugin Flaw Risks 4+ Million WordPr…
A critical authentication bypass vulnerability has been disclosed in the Really Simple Security (formerly Really Simple SSL) plugin for WordPress that, if succ…
A high-severity security flaw has been disclosed in the LiteSpeed Cache plugin for WordPress that could allow an unauthenticated threat actor to elevate their …
Heads up, WordPress admins! It’s time to update your websites with the latest Jetpack release…Critical Vulnerability Patched In Jetpack WordPress Plugin on Lat…