A critical authentication bypass vulnerability in the WPMU DEV Dashboard plugin could allow unauthenticated attackers to ...
WordPress plugin TranslatePress stored admin password-reset links in a database table any visitor could read without logging ...
Chinese-speaking hackers exploited ownCloud and WordPress flaws to steal sensitive data from Philippine nuclear and naval ...
CVE-2026-19632 exposes WordPress admin password-reset links through TranslatePress, allowing unauthenticated attackers to take over affected WordPress websites.
A critical vulnerability chain in the popular Avada theme for WordPress can be exploited by an unauthenticated attacker to ...
TranslatePress WordPress plugin flaw lets unauthenticated attackers hijack admin accounts and compromise websites.
Two miniOrange SAML WordPress plugin auth bypasses were exploited while paid editions never appeared in any vulnerability ...
A critical security vulnerability in the Pods WordPress plugin could allow unauthenticated attackers to seize ...
Compromised WordPress sites have been used by a global operation, using trusted websites to deliver malware, instruct ...
StopAndProtect turned nearly 2K hacked WordPress sites into a criminal network for malware delivery, data theft, surveillance ...
StopAndProtect uses close to 2,000 hacked WordPress sites to deliver malware and run C2, compromising 6,000+ unique IP ...