-
WordPress Security Scan
WordPress is undisputedly the most popular Content Management System (CMS) in use today. With the most commonly quoted figure being the one published by w3techs, putting WordPress at 37.7% of all websites today (July 2020) and growing. It is no surprise then that WordPress is also the most targeted CMS by hackers. Despite what some believe, WordPress…
-
June 2020 Monthly Vulnerability Roundup
WordPress Core Vulnerabilities WordPress < 5.4.2 – Disclosure of Password-Protected Page/Post CommentsWordPress < 5.4.2 – Misuse of set-screen-option Leading to Privilege EscalationWordPress < 5.4.2 – Authenticated XSS via Theme UploadWordPress < 5.4.2 – Open RedirectionWordPress < 5.4.2 – Authenticated XSS via Media FilesWordPress < 5.4.2 – Authenticated XSS in Block Editor
-
WordPress 5.4.2 Security and Maintenance Release
Yesterday, June 10th, WordPress released version 5.4.2, which was a security and maintenance release. Version 5.4.2 of WordPress fixes 6 separate security issues. Three of which addressed authenticated Cross-Site Scripting (XSS) vulnerabilities. One addressing an potential Open Redirect vulnerability. One privilege escalation vulnerability, and one issue where password protected posts and pages comments could be exposed in certain…