Skip to content
GeekWire
  • HOME
  • NEWS
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • BLOG
    • Books
    • OSINT
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • OSINT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap
GeekWire
GeekWire
  • HOME
  • NEWS
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • BLOG
    • Books
    • OSINT
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • OSINT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

Plugins

Critical RCE Flaw Reported in WordPress Elementor Website Builder Plugin

18 April 2022

Elementor, a WordPress website builder plugin with over five million active installations, has been found to be vulnerable to an …

Tags Critical, Flaws, Plugins, Security Pro, Vulnerability

AdSanity, AccessPress Plugins Open Scads of WordPress Sites to Takeover

25 January 2022

The WordPress content management system (CMS) is offering admins more headaches this week, thanks to a pair of disparate but concerning …

Tags Hacks, Malware, Plugins, Security Pro, Sites

Hackers Planted Secret Backdoor in Dozens of WordPress Plugins and Themes

22 January 2022

In yet another instance of software supply chain attack, dozens of WordPress themes and plugins hosted on a developer’s website were …

Tags Backdoors, Cyber Threats, Hacking, Plugins, Secrets

20K WordPress Sites Exposed by Insecure Plugin REST-API

21 January 2022

The WordPress WP HTML Mail plugin for personalized emails is vulnerable to code injection and phishing due to …

Tags Exposed, Plugins, Security Pro, Sites, Vulnerability

5 Steps to Serverless Security With the AWS Lambda Plugin

19 January 2022

For the DevOps-averse developer, lambdas are heaven. They can focus on writing self-contained and modularized pieces of code, deploying …

Tags AWS Lambda, IT, Plugins, Serverless, Steps

High-Severity Vulnerability in 3 WordPress Plugins Affected 84,000 Websites

17 January 2022

Researchers have disclosed a security shortcoming affecting three different WordPress plugins that impact over 84,000 websites and could be …

Tags IT, Plugins, Security Pro, Vulnerability, Websites

Three Plugins with Same Bug Put 84K WordPress Sites at Risk

14 January 2022

Researchers have discovered three WordPress plug-ins with the same vulnerability that allows an attacker to update arbitrary site options …

Tags Bug, Plugins, Risks, Security Pro, Sites

All in One SEO Plugin Bug Threatens 3M Websites with Takeovers

22 December 2021

A popular WordPress SEO-optimization plugin, called All in One SEO, has a pair of security vulnerabilities that, when combined into an …

Tags 3M, Bug, One, Plugins, Security Pro

80K Retail WooCommerce Sites Exposed by Plugin XSS Bug

1 December 2021

The Variation Swatches plugin security flaw lets attackers with low-level permissions tweak important settings on e-commerce sites to …

Tags Bug, Exposed, Plugins, Retail, Security Pro

WordPress Malware Removal Plugin

6 November 2021

In this day and age, you need to take your website security seriously. While WordPress is a generally secure and safe content management …

Tags IT, Java, Malware, Plugins, Programming

WordPress Plugin Bug Lets Subscribers Wipe Sites

27 October 2021

The flaw, found in the Hashthemes Demo Importer plugin, allows any authenticated user to exsanguinate a vulnerable site, deleting nearly …

Tags Bug, Plugins, Security Pro, Sites, Subscribers

Brizy WordPress Plugin Exploit Chains Allow Full Site Takeovers

13 October 2021

Vulnerabilities in the Brizy Page Builder plugin for WordPress sites could be chained together to allow attackers to completely take over a …

Tags Full, Plugins, Security Pro, Sites, Web Security

Falco Plugins Bring New Data Sources to Real-Time Security

12 October 2021

Cloud security company Sysdig has announced the addition of plugins to Falco, the Cloud Native Computing Foundation (CNCF) runtime security …

Tags Cloud Computing, Cloud-Native, Monitoring, New, Plugins

New Capoae Malware Infiltrates WordPress Sites and Installs Backdoored Plugin

21 September 2021

A recently discovered wave of malware attacks has been spotted using a variety of tactics to enslave susceptible machines with …

Tags IT, Malware, New, Plugins, Sites
Post navigation
Older posts
Page1 Page2 … Page10 Next →
Cookie-Free

NVD

  • CVE-2022-28394 – EOL Product CVE – Installer of Trend Micro Password Manager (Consumer) versions 3.7.0.1223 …27 May 2022
  • CVE-2022-30687 – Trend Micro Maximum Security 2022 is vulnerable to a link following vulnerability that cou …27 May 2022
  • CVE-2022-30700 – An incorrect permission assignment vulnerability in Trend Micro Apex One and Apex One as a …27 May 2022
  • CVE-2022-30701 – An uncontrolled search path element vulnerability in Trend Micro Apex One and Apex One as …27 May 2022
  • CVE-2022-1898 – Use After Free in GitHub repository vim/vim prior to 8.2. …27 May 2022
  • CVE-2022-1907 – Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. …27 May 2022

EXPLOITS

  • qdPM 9.1 – Remote Code Execution (RCE) (Authenticated) (v2)26 May 2022
  • m1k1o’s Blog v.10 – Remote Code Execution (RCE) (Authenticated)23 May 2022
  • OpenCart v3.x Newsletter Module – Blind SQLi23 May 2022
  • T-Soft E-Commerce 4 – ‘UrunAdi’ Stored Cross-Site Scripting (XSS)17 May 2022
  • Survey Sparrow Enterprise Survey Software 2022 – Stored Cross-Site Scripting (XSS)17 May 2022
  • SDT-CW3B1 1.1.0 – OS Command Injection17 May 2022

SECURELIST

  • IT threat evolution in Q1 2022. Mobile statistics27 May 2022
  • IT threat evolution Q1 202227 May 2022
  • IT threat evolution in Q1 2022. Non-mobile statistics27 May 2022
  • Managed detection and response in 202126 May 2022
  • The Verizon 2022 DBIR25 May 2022
  • What’s wrong with automotive mobile apps?25 May 2022

Information Cyber Network Enterprise Security News

Copyright © 2022 GeekWire | Cookie-Free | Privacy Policy | We are not responsible for the content of external sites.

GeekWire Information Cyber Network Enterprise Security News

Next Page »