web security best practices

WP Plugin Vulnerabilities Image - Translate WordPress and go Multilingual Vulnerability– Weglot - Authenticated (Contributor+) Stored Cross-Site Scripting via Block Attributes - CVE-2024-2124 | WordPress Plugin Vulnerability Report - web security best practices

Translate WordPress and go Multilingual Vulnerability– Weglot – Authenticated (Contributor+) Stored Cross-Site Scripting via Block Attributes – CVE-2024-2124 | WordPress Plugin Vulnerability Report

By Your WP Guy / Mar 18, 2024

Plugin Name: Translate WordPress and go Multilingual – Weglot Key Information: Software Type: Plugin Software Slug: weglot Software Status: Active Software Author: remyb92 Software Downloads: 2,296,771 Active Installs: 60,000 Last Updated: March 19, 2024 Patched Versions: 4.2.6 Affected Versions: <= 4.2.5 Vulnerability Details: Name: Translate WordPress and go Multilingual – Weglot <= 4.2.5 Title: Authenticated…

Read More
WP Plugin Vulnerabilities Image - Advanced iFrame Vulnerability- Authenticated Contributor+ Stored Cross-Site Scripting - CVE-2024-1341 | WordPress Plugin Vulnerability Report - web security best practices

Advanced iFrame Vulnerability- Authenticated Contributor+ Stored Cross-Site Scripting – CVE-2024-1341 | WordPress Plugin Vulnerability Report

By Your WP Guy / Feb 28, 2024

Plugin Name: Advanced iFrame Key Information: Software Type: Plugin Software Slug: advanced-iframe Software Status: Active Software Author: mdempfle Software Downloads: 1,864,724 Active Installs: 60,000 Last Updated: February 28, 2024 Patched Versions: 2024.2 Affected Versions: <= 2024.1 Vulnerability Details: Name: Advanced iFrame <= 2024.1 Title: Authenticated (Contributor+) Stored Cross-Site Scripting Type: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:N CVE: CVE-2024-1341 CVSS Score:…

Read More
WP Plugin Vulnerabilities Image - Bold Page Builder Vulnerability- Authenticated (Contributor+) Stored Cross-Site Scripting via Icon Link - CVE-2024-1160 |WordPress Plugin Vulnerability Report - web security best practices

Bold Page Builder Vulnerability- Authenticated (Contributor+) Stored Cross-Site Scripting via Icon Link – CVE-2024-1160 |WordPress Plugin Vulnerability Report

By Your WP Guy / Feb 12, 2024

Plugin Name: Bold Page Builder Key Information: Software Type: Plugin Software Slug: bold-page-builder Software Status: Active Software Author: boldthemes Software Downloads: 1,662,907 Active Installs: 50,000 Last Updated: February 27, 2024 Patched Versions: 4.8.1 Affected Versions: <= 4.8.0 Vulnerability Details: Name: Bold Page Builder <= 4.8.0 Title: Authenticated (Contributor+) Stored Cross-Site Scripting via Icon Link Type:…

Read More
WP Plugin Vulnerabilities Image - Meta Box Vulnerability– WordPress Custom Fields Framework - Authenticated (Contributor+) Stored Cross-Site Scripting - CVE-2023-6526 |WordPress Plugin Vulnerability Report - web security best practices

Meta Box Vulnerability– WordPress Custom Fields Framework – Authenticated (Contributor+) Stored Cross-Site Scripting – CVE-2023-6526 |WordPress Plugin Vulnerability Report

By Your WP Guy / Feb 5, 2024

Plugin Name: Meta Box – WordPress Custom Fields Framework Key Information: Software Type: Plugin Software Slug: meta-box Software Status: Active Software Author: rilwis Software Downloads: 16,593,050 Active Installs: 700,000 Last Updated: February 8, 2024 Patched Versions: 5.9.3 Affected Versions: <= 5.9.2 Vulnerability Details: Name: Meta Box – WordPress Custom Fields Framework <= 5.9.2 Title: Authenticated…

Read More
WP Plugin Vulnerabilities Image - Easy Digital Downloads Vulnerability– Sell Digital Files (eCommerce Store & Payments Made Easy) - Authenticated (Shop Manager+) Stored Cross-Site Scripting - CVE-2024-0659 | WordPress Plugin Vulnerability Report - web security best practices

Easy Digital Downloads Vulnerability– Sell Digital Files (eCommerce Store & Payments Made Easy) – Authenticated (Shop Manager+) Stored Cross-Site Scripting – CVE-2024-0659 | WordPress Plugin Vulnerability Report

By Your WP Guy / Feb 2, 2024

Plugin Name: Easy Digital Downloads – Sell Digital Files (eCommerce Store & Payments Made Easy) Key Information: Software Type: Plugin Software Slug: easy-digital-downloads Software Status: Active Software Author: smub Software Downloads: 4,802,741 Active Installs: 50,000 Last Updated: February 8, 2024 Patched Versions: 3.2.7 Affected Versions: <= 3.2.6 Vulnerability Details: Name: Easy Digital Downloads <= 3.2.6…

Read More
WP Plugin Vulnerabilities Image - Essential Addons for Elementor Vulnerability– Best Elementor Templates, Widgets, Kits & WooCommerce Builders - Authenticated (Contributor+) Stored Cross-Site Scripting - CVE-2024-0954 | WordPress Plugin Vulnerability Report - web security best practices

Essential Addons for Elementor Vulnerability– Best Elementor Templates, Widgets, Kits & WooCommerce Builders – Authenticated (Contributor+) Stored Cross-Site Scripting – CVE-2024-0954 | WordPress Plugin Vulnerability Report

By Your WP Guy / Feb 1, 2024

Plugin Name: Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders Key Information: Software Type: Plugin Software Slug: essential-addons-for-elementor-lite Software Status: Active Software Author: wpdevteam Software Downloads: 66,002,609 Active Installs: 2,000,000 Last Updated: February 12, 2024 Patched Versions: 5.9.8 Affected Versions: <= 5.9.7 Vulnerability Details: Name: Essential Addons for Elementor –…

Read More
WP Plugin Vulnerabilities Image - Website Builder by SeedProd Vulnerability - Missing Authorization via seedprod_lite_new_lpage - CVE-2024-1072 | WordPress Plugin Vulnerability Report - web security best practices

Website Builder by SeedProd Vulnerability – Missing Authorization via seedprod_lite_new_lpage – CVE-2024-1072 | WordPress Plugin Vulnerability Report

By Your WP Guy / Jan 31, 2024

Plugin Name: Website Builder by SeedProd – Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode Key Information: Software Type: Plugin Software Slug: coming-soon Software Status: Active Software Author: seedprod Software Downloads: 23,816,722 Active Installs: 900,000 Last Updated: February 1, 2024 Patched Versions: 6.15.23 Affected Versions: <= 6.15.21 Vulnerability Details: Name: Website Builder by…

Read More
WP Plugin Vulnerabilities Image - Elementor Addons by Livemesh Vulnerability - Authenticated (Contributor+) Stored Cross-Site Scripting - CVE-2024-0448 |WordPress Plugin Vulnerability Report - web security best practices

Elementor Addons by Livemesh Vulnerability – Authenticated (Contributor+) Stored Cross-Site Scripting – CVE-2024-0448 |WordPress Plugin Vulnerability Report

By Your WP Guy / Jan 25, 2024

Plugin Name: Elementor Addons by Livemesh Key Information: Software Type: Plugin Software Slug: addons-for-elementor Software Status: Active Software Author: livemesh Software Downloads: 3,692,182 Active Installs: 70,000 Last Updated: January 30, 2024 Patched Versions: 8.3.2 Affected Versions: <= 8.3.1 Vulnerability Details: Name: Elementor Addons by Livemesh <= 8.3.1 Title: Authenticated (Contributor+) Stored Cross-Site Scripting Type: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N…

Read More
WP Plugin Vulnerabilities Image - Paid Memberships Pro Vulnerability - Information Exposure in Debug Logs |WordPress Plugin Vulnerability Report  - web security best practices

Paid Memberships Pro Vulnerability – Information Exposure in Debug Logs |WordPress Plugin Vulnerability Report 

By Your WP Guy / Jan 12, 2024

Plugin Name: Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions Key Information: Software Type: Plugin Software Slug: paid-memberships-pro Software Status: Active Software Author: strangerstudios Software Downloads: 5,525,093 Active Installs: 90,000 Last Updated: January 12, 2024 Patched Versions: 2.12.7 Affected Versions: <= 2.12.6 Vulnerability Details: Name: Paid Memberships Pro <= 2.12.6 Title: Information…

Read More
WP Plugin Vulnerabilities Image - Formidable Forms Vulnerability – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder - Authenticated (Administrator+) Stored Cross-Site Scripting - CVE-2023-6842 | WordPress Plugin Vulnerability Report  - web security best practices

Formidable Forms Vulnerability – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder – Authenticated (Administrator+) Stored Cross-Site Scripting – CVE-2023-6842 | WordPress Plugin Vulnerability Report 

By Your WP Guy / Jan 8, 2024

Plugin Name: Formidable Forms – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder Key Information: Software Type: Plugin Software Slug: formidable Software Status: Active Software Author: sswells Software Downloads: 19,370,348 Active Installs: 300,000 Last Updated: January 8, 2024 Patched Versions: 6.7.1 Affected Versions: <= 6.7 Vulnerability Details: Name: Formidable Forms <= 6.7…

Read More