organization · 4 records
Wordfence

WordPress Adds Automated Plugin Reviews to Block High-Risk Updates
WordPress is implementing automated security reviews for all plugin updates to block high-risk code before distribution.
1 outlet

Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells
Attackers are exploiting critical vulnerabilities in WooCommerce Wholesale Lead Capture and The Events Calendar WordPress plugins to achieve remote code execution.
1 outlet Cyber read

Critical security vulnerabilities discovered in multiple WordPress plugins and themes
Multiple critical security vulnerabilities in WordPress plugins and themes have been disclosed, enabling authentication bypass, account takeover, and remote code execution.
1 outlet Cyber read

Security vulnerability discovered in DD-WRT router UPnP functionality
CVE-2021-27137 disclosed: An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handling functionality allows an unauthenticated remote attacker to send a request that would ove
1 outlet Cyber read