A critical Remote Code Execution (RCE) vulnerability has been discovered in the Sneeit Framework, a core plugin...
wordpress
A critical security vulnerability carrying a near-maximum severity score has been discovered in “Advanced Custom Fields: Extended,”...
A critical security flaw in a popular WordPress plugin has triggered a massive wave of exploitation attempts,...
A newly disclosed critical vulnerability in the Sneeit Framework — a widely used WordPress plugin powering premium...
A newly disclosed high-severity security flaw in the widely used W3 Total Cache (W3TC) plugin is putting...
Researchers at Wordfence have disclosed a critical vulnerability (CVE-2025-11749, CVSS 9.8) in the popular AI Engine WordPress...
A critical-severity Local File Inclusion (LFI) flaw in the popular WordPress plugin ShopLentor – WooCommerce Builder for...
An extremely severe security vulnerability has been discovered and is being actively exploited in the Jobmonster –...
A critical security vulnerability has been identified and is being actively exploited in the King Addons for...
The Post SMTP plugin, used by over 400,000 WordPress sites to ensure reliable email delivery, has been...
The Wordfence Threat Intelligence Team has uncovered a highly sophisticated malware campaign targeting WordPress e-commerce sites using...
The Wordfence Threat Intelligence team has issued an urgent warning about CVE-2025-11533, a critical privilege escalation vulnerability...
A security flaw has been discovered in the LiteSpeed Cache for WordPress (LSCWP) plugin, one of the...
The Wordfence Threat Intelligence team has issued a new warning about the resurgence of large-scale attacks exploiting...
Security researchers at Wordfence have issued an urgent warning about an actively exploited authentication bypass vulnerability in...
A newly disclosed vulnerability in the Spirit Framework plugin for WordPress has put thousands of websites at...
A new vulnerability has been disclosed in the widely used Yoast SEO Premium plugin for WordPress, potentially...
Two vulnerabilities were found in WordPress Core, affecting all versions up to and including 6.8.2. Both flaws...
Security researcher Puja Srivastava from Sucuri uncovered two malicious files designed to guarantee persistent attacker access by...
A critical security vulnerability has been disclosed in the widely used Database for Contact Form 7, WPforms,...
Kaspersky Labs has uncovered a sophisticated, multi-pronged malware operation leveraging fake legal threats, compromised WordPress sites, and...
A critical security vulnerability has been discovered in the Everest Forms plugin, a widely used WordPress plugin...