Security News

WordPress plugin sees second serious security bug in six weeks
2019-05-21 09:58

Researchers have uncovered another serious bug in WP Live Chat that could lead to the mass compromise of websites.

WordPress WP Live Chat Support Plugin Fixes XSS Flaw
2019-05-17 19:28

A cross-site scripting flaw in a popular WordPress plugin enables an unauthenticated attacker to insert JavaScript payloads into impacted websites.

WordPress 5.2 Brings New Security Features
2019-05-08 16:36

WordPress released version 5.2 of the popular content management system (CMS) this week, which includes new security and stability features.  Named “Jaco,” the update is already available in the...

WordPress updates are digitally signed at last!
2019-05-08 11:28

WordPress 5.2 is out and brings a number of functional improvements, but the great news for those who are worried about the security of their installation is the implementation of digital signing...

WP Live Chat WordPress Plugin Re-Patches File Upload Flaw
2019-05-06 21:42

After researchers were able to bypass a file upload validation flaw patch in WP Live Chat, a new patch has been issued.

Users Urged to Disable WordPress Plugin After Unpatched Flaw Disclosed
2019-04-26 19:44

Yet another WordPress plugin vulnerability has put thousands of websites at risk.

Critical Unpatched Flaw Disclosed in WordPress WooCommerce Extension
2019-04-26 11:33

If you own an eCommerce website built on WordPress and powered by WooCommerce plugin, then beware of a new, unpatched vulnerability that has been made public and could allow attackers to...

Hackers Actively Exploiting Widely-Used Social Share Plugin for WordPress
2019-04-23 19:18

Hackers have been found exploiting a pair of critical security vulnerabilities in one of the popular social media sharing plugins to take control over WordPress websites that are still running a...

Exploits for Social Warfare WordPress Plugin Reach Critical Mass
2019-04-23 17:30

More and more attacks taking advantage of a XSS and RCE bug in the popular plugin have cropped up in the wild.

WordPress Yellow Pencil Plugin Flaws Actively Exploited
2019-04-12 14:13

Yet another Wordpress plugin, Yellow Pencil Visual Theme Customizer, is being exploited in the wild after two software vulnerabilities were discovered.