Zephyrnet Logo

Tag: wordpress security

Bricks Builder For WordPress RCE Vulnerability

Bricks Visual Site Builder for WordPress recently patched a critical severity vulnerability rated 9.8/10 which is actively being exploited right now.Bricks Builder Bricks Builder is...

Top News

Yoast SEO 20.8: Fixes, enhancements, and a new Premium feature

Here’s another release of our SEO plugin, Yoast SEO 20.8. We’ve improved our SEO analysis in this release and fixed several issues. In...

Vulnerability in WordPress Google Analytics Plugin Hits +3 Million Websites

The National Vulnerability Database announced that a popular Google Analytics WordPress plugin installed in over 3 million was discovered to contain a Stored Cross-Site...

Critical Bug in WordPress Plugin Used by Over 1 Million Websites Fixed with Patch

WordPress is one of the most popular content management systems (CMS) in the world, powering over 40% of all websites on the internet. With...

5 Types of Must-Have WordPress Ecommerce Plugins

Is your ecommerce business built around a WordPress website?If your answer is yes, then you may be overwhelmed by the more than 50,000 WordPress website plugins that are currently available. But for most...

Hacked Ukrainian Military Emails Used in Attacks on European Governments

Staff at European government organizations have been receiving malicious emails that appear to be coming from email accounts belonging to members of the Ukrainian military.

read more

Vulnerability in UpdraftPlus Plugin Exposed Millions of WordPress Site Backups

A high-severity vulnerability in the UpdraftPlus WordPress plugin can allow an attacker to obtain website backups that could contain sensitive information.

read more

Critical Flaw Uncovered in WordPress Backup Plugin Used by Over 3 Million Sites

Patches have been issued to contain a "severe" security vulnerability in UpdraftPlus, a WordPress plugin with over three million installations, that can be weaponized to download the site's private data using an account on the vulnerable sites. "All versions of UpdraftPlus from March 2019 onwards have contained a vulnerability caused by a missing permissions-level check, allowing untrusted users

Critical Code Execution Flaws Patched in ‘PHP Everywhere’ WordPress Plugin

Thousands of WordPress websites were impacted by three remote code execution vulnerabilities that were identified in the PHP Everywhere plugin, the Wordfence team at WordPress security company Defiant warns.

read more

Elementor WordPress plugin has a gaping security hole – update now

We shouldn't need to say, "Check your inputs!" these days, but we're saying it anyway.

Tens of Thousands of Websites Vulnerable to RCE Flaw in WordPress Plug-in

Now-patched issue in Essential Addons for Elementor gives attackers a way to carry out local file inclusion attacks, researchers say.

Hackers Planted Secret Backdoor in Dozens of WordPress Plugins and Themes

In yet another instance of software supply chain attack, dozens of WordPress themes and plugins hosted on a developer's website were backdoored with malicious code in the first half of September 2021 with the goal of infecting further sites. The backdoor gave the attackers full administrative control over websites that used 40 themes and 53 plugins belonging to AccessPress Themes, a Nepal-based

Security Vulnerability in 3 WordPress Plugins Put Over 84,000 Websites at Risk

Researchers from WordPress security company Wordfence found a security vulnerability that affected 3 different WordPress plugins, which has impacted over 84,000 websites and could be abused by a malicious threat actor to take over vulnerabile sites. “This flaw made it possible for an attacker to update arbitrary site options on a vulnerable site, provided they could […]

Latest Intelligence

spot_img
spot_img