Vulnerability

Tips for improving website security on your WordPress Site.

A few top-notch WordPress security solutions we normally recommend Improving website security is crucial to protect your website from various online threats, safeguard user data,

Read More

Critical Vulnerabilities in All in One SEO Plugin Affects Millions of WordPress Websites

Security researchers at Jetpack discovered two serious vulnerabilities in the All In One SEO Plugin. The vulnerabilities could allow a hacker to access usernames and

Read More

[Security] Fixed Cross-Site Scripting vulnerability exploit in the shortcodes in Sassy Social Share < 3.3.45 - Contributor+ Stored XSS

The plugin does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a

Read More

How to Detect & Remove Malware from a WordPress Site

It’s no surprise that WordPress powers 43% of the web. Since it’s open source, people from around the world are constantly contributing to improvements. Plus, because of

Read More

Security: Plugin Vulnerability Notification – WordPress Infinite Scroll – Ajax Load More Plugin

Ajax Load More is the ultimate WordPress infinite scroll plugin for lazy loading posts, single posts, pages, comments and more with Ajax powered queries. Build

Read More

Vulnerability Found In WordPress Gutenberg Plugin?

National Vulnerability Database published a notification of a Gutenberg plugin vulnerability. The United States government’s National Vulnerability Database published a notification of a vulnerability discovered

Read More

Common WordPress Site Vulnerabilities and How to Actually Fix Them

One of the biggest horrors a site owner can experience is having their site hacked. This causes delays in the business and exposes information (both yours

Read More

All-in-One WP Migration Vulnerabilities

All-in-One WP Migration < 7.59 – Admin+ File Deletion on Windows Hosts via Path Traversal Description The plugin is vulnerable to arbitrary file deletion via

Read More

WordPress Elementor Plugin Remote Code Execution Vulnerability

A Remote Code Execution Vulnerability discovered in the Elementor Website Builder plugin that can lead to full site takeover A vulnerability was discovered in Elementor,

Read More

Reasons To Avoid Using Free And Nulled WordPress Themes And Plugins

When it comes to choosing the right theme & plugin for your website, you either have a choice of going for nulled/cracked theme or plugin

Read More

WordPress Plugin duplicate page plugin vulnerability

WordPress Plugin Duplicate Page and Post is vulnerability into the website’s content, thus publicizing content to normal site visitors or to search engines without the

Read More

Vulnerabilities detected on User Activity Log plugin

WordPress Plugin User Activity Log is prone to multiple vulnerabilities

Read More

security vulnerability that was discovered in the Advanced Custom Fields plugin

We are writing to you today to notify you about a security vulnerability that was discovered in the Advanced Custom Fields plugin. If you have already updated Advanced Custom

Read More

WordPress Autoptimize Plugin Vulnerability Affects +1 Million Sites

Website Optimization Plugin Autoptimize contains a Stored XSS vulnerability. A patch has been released to fix the problem. WordPress optimization plugin Autoptimize recently updated to

Read More
  • September 4, 2020
  • by

Critical Vulnerability in File Manager Plugin Affecting 700k WordPress Websites

Security Risk: High Exploitation Level: Easy DREAD Score: 9.8 Vulnerability: File upload Patched Version: 6.9 Yesterday, the WordPress plugin File Manager was updated, fixing a

Read More