Ally was carrying an SQL injection flaw that allowed data exfiltration.
A popular WP plugin can be abused to take over websites and thousands of sites are vulnerable.
Hackers exploit a critical WordPress plugin flaw that allows creation of administrator accounts without authentication.
Threat actors are attempting to exploit three critical CVEs from 2024 impacting two popular WordPress plugins, according to Wordfence. The security vendor claimed that the bugs affect the GutenKit and ...
WordPress plug-ins allow organizations to quickly extend the functionality of their websites without requiring any coding or advanced technical skills. But they have also been the biggest source of ...
A vulnerability in WPForms, a WordPress plugin used in over 6 million websites, could allow subscriber-level users to issue arbitrary Stripe refunds or cancel subscriptions. Tracked under ...
WordPress releases an additional security release 6.9.4 to fix vulnerabilities previous update 6.9.2 failed to address ...
Hackers are exploiting a critical vulnerability in the User Registration & Membership plugin, which is installed on more than ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results