Security News > 2015 > May > Hackers target critical XSS vulnerability in millions of Wordpress sites (ZDNet)

2015-05-07 11:10
News URL
Related news
- Critical FortiSwitch flaw lets hackers change admin passwords remotely (source)
- Hackers exploit WordPress plugin auth bypass hours after disclosure (source)
- OttoKit WordPress Plugin Admin Creation Vulnerability Under Active Exploitation (source)
- Gladinet’s Triofox and CentreStack Under Active Exploitation via Critical RCE Vulnerability (source)
- Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session Persistence (source)
- Critical Erlang/OTP SSH Vulnerability (CVSS 10.0) Allows Unauthenticated Code Execution (source)
- Critical Commvault RCE vulnerability fixed, PoC available (CVE-2025-34028) (source)
- Hackers Exploit Critical Craft CMS Flaws; Hundreds of Servers Likely Compromised (source)
- CISA warns of hackers targeting critical oil infrastructure (source)
- Hackers exploit OttoKit WordPress plugin flaw to add admin accounts (source)