Tuesday, November 12, 2024

Word press

Unauthenticated RCE in WordPress Plugin Exposes 100,000 WordPress Sites

A critical vulnerability has been discovered in the GiveWP plugin, a popular WordPress donation and fundraising platform.This vulnerability, CVE-2024-5932, exposes over 100,000 WordPress sites to potential remote code execution...

WordPress Plugin Flaw Exposes 90K+ Websites to Hack Attack

Over 90,000 websites are currently at risk due to a vulnerability found in the WordPress Backup Migration Plugin. This vulnerability has enabled unauthenticated remote...

WordPress POP Chain Flaw Exposes Over 800M+ Websites to Attack

A critical remote code execution vulnerability has been patched as part of the Wordpress 6.4.2 version.This vulnerability exists in the POP chain introduced...

Zero-day Stored XSS Vulnerability in WordPress Social Share Plug-in let Hackers to Compromise 70,000 Websites

Researchers discovered a critical Stored XSS Zero-day flaw in widely used social sharing plug-in called "Social Warfare" let attackers inject the malicious script and...