Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress that can be used to forge SAML responses and log in as administrators.
Fedora has released WordPress version 6.9.7, addressing multiple security vulnerabilities, including remote code execution and stored cross-site scripting issues, enhancing the security of the platform.
Fedora released WordPress version 6.9.7, addressing multiple security vulnerabilities, including remote code execution, various XSS issues, privilege escalation, and information disclosure, enhancing overall site protection.
A critical vulnerability in the Elementor Pro WordPress plugin could allow attackers to upload executable files for remote code execution on the server.
WordPress 7.1 is here. We tested every new feature - upgraded Notes with @mention emails, responsive styling, shareable revisions, Tabs and Playlist blocks.