WordPress plugin

Critical flaws in NextGen Gallery WordPress plugin still impact over 500K installs

The development team behind the NextGen Gallery plugin has addressed two severe CSRF vulnerabilities that could have allowed site takeover.…

5 years ago

Experts addressed flaws in Popup Builder WordPress plugin

Multiple issues in WordPress 'Popup Builder' Plugin could be exploited by hackers to perform various malicious actions on affected websites.…

5 years ago

5 million WordPress sites potentially impacted by a Contact Form 7 flaw

The development team behind the Contact Form 7 WordPress plugin discloses an unrestricted file upload vulnerability. Jinson Varghese Behanan from Astra Security discovered…

5 years ago

WordPress Easy WP SMTP zero-day potentially exposes hundreds of thousands of sites to hack

Threat actors are actively exploiting a zero-day vulnerability in the popular Easy WP SMTP WordPress plugin installed on more than…

5 years ago

KingComposer fixes a reflected XSS impacting 100,000 WordPress sites

An XSS vulnerability in the KingComposer page builder for WordPress impacts 100,000 websites using the WordPress plugin.  Researchers at Wordfence Threat…

6 years ago

Over 800K WordPress sites are at risk due to a flaw in Ninja Forms plugin

The development team oh the Ninja Forms WordPress plugin fixed a high severity security flaw that can let attackers take…

6 years ago

100,000 WordPress sites using the Contact Form 7 Datepicker plugin are exposed to hack

An authenticated stored cross-site scripting (XSS) vulnerability could allow attackers to create rogue admins on WordPress sites using Contact Form…

6 years ago

A critical flaw in Rank Math WordPress plugin allows hackers to give users Admins privileges

A critical privilege escalation flaw in the WordPress SEO Plugin – Rank Math plugin can allow registered users to gain…

6 years ago

RCE in popular ThemeREX WordPress Plugin has been actively exploited

The WordPress plugin 'ThemeREX Addons' is affected by a critical vulnerability that could allow remote attackers to execute arbitrary code.…

6 years ago

Crooks are attempting to take over tens of thousands of WordPress sites

Threat actors are launching a hacking campaign aimed at taking over tens of thousands of WordPress sites by exploiting critical…

6 years ago

This website uses cookies.