WordPress Maintenance

Elementor Addon Elements Vulnerability – Authenticated (Contributor+) Stored Cross-Site Scripting – CVE-2024-0834 |WordPress Plugin Vulnerability Report

By Your WP Guy / Feb 5, 2024

Plugin Name: Elementor Addon Elements Key Information: Software Type: Plugin Software Slug: addon-elements-for-elementor-page-builder Software Status: Active Software Author: webtechstreet Software Downloads: 2,364,972 Active Installs: 100,000 Last Updated: February 8, 2024 Patched Versions: 1.12.12 Affected Versions: 1.12.11 – 1.12.11 Vulnerability Details: Name: Elementor Addon Elements <= 1.12.11 Title: Authenticated (Contributor+) Stored Cross-Site Scripting Type: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N CVE:…

Read More
WP Plugin Vulnerabilities Image - Minimal Coming Soon Vulnerability– Coming Soon Page - Unauthenticated Maintenance Mode Bypass - CVE-2024-1075 |WordPress Plugin Vulnerability Report - WordPress Maintenance

Minimal Coming Soon Vulnerability– Coming Soon Page – Unauthenticated Maintenance Mode Bypass – CVE-2024-1075 |WordPress Plugin Vulnerability Report

By Your WP Guy / Feb 5, 2024

Plugin Name: Minimal Coming Soon – Coming Soon Page Key Information: Software Type: Plugin Software Slug: minimal-coming-soon-maintenance-mode Software Status: Active Software Author: webfactory Software Downloads: 1,881,425 Active Installs: 100,000 Last Updated: February 8, 2024 Patched Versions: 2.38 Affected Versions: <= 2.37 Vulnerability Details: Name: Minimal Coming Soon – Coming Soon Page <= 2.37 Title: Unauthenticated…

Read More
WP Plugin Vulnerabilities Image - PDF Flipbook, 3D Flipbook Vulnerability– DearFlip - Authenticated (Contributor+) Stored Cross-Site Scripting - CVE-2024-0895 | WordPress Plugin Vulnerability Report  - WordPress Maintenance

PDF Flipbook, 3D Flipbook Vulnerability– DearFlip – Authenticated (Contributor+) Stored Cross-Site Scripting – CVE-2024-0895 | WordPress Plugin Vulnerability Report 

By Your WP Guy / Feb 2, 2024

Plugin Name: PDF Flipbook, 3D Flipbook – DearFlip Key Information: Software Type: Plugin Software Slug: 3d-flipbook-dflip-lite Software Status: Active Software Author: dearhive Software Downloads: 1,178,266 Active Installs: 100,000 Last Updated: February 8, 2024 Patched Versions: 2.2.27 Affected Versions: <= 2.2.26 Vulnerability Details: Name: PDF Flipbook, 3D Flipbook – DearFlip <= 2.2.26 Title: Authenticated (Contributor+) Stored…

Read More
WP Plugin Vulnerabilities Image - File Manager Vulnerability - Sensitive Information Exposure via Backup Filenames - CVE-2024-0761 | WordPress Plugin Vulnerability Report - WordPress Maintenance

File Manager Vulnerability – Sensitive Information Exposure via Backup Filenames – CVE-2024-0761 | WordPress Plugin Vulnerability Report

By Your WP Guy / Jan 22, 2024

Plugin Name: File Manager Key Information: Software Type: Plugin Software Slug: wp-file-manager Software Status: Active Software Author: mndpsingh287 Software Downloads: 19,681,705 Active Installs: 1,000,000 Last Updated: January 22, 2024 Patched Versions: 7.2.2 Affected Versions: <= 7.2.1 Vulnerability Details: Name: File Manager <= 7.2.1 – Sensitive Information Exposure via Backup Filenames Title: Sensitive Information Exposure via…

Read More
WP Plugin Vulnerabilities Image - Contact Form Plugin - Authenticated(Administrator+) Stored Cross-Site Scripting via imported form title - CVE-2024-0618 | WordPress Plugin Vulnerability Report - WordPress Maintenance

Contact Form Plugin – Authenticated(Administrator+) Stored Cross-Site Scripting via imported form title – CVE-2024-0618 | WordPress Plugin Vulnerability Report

By Your WP Guy / Jan 18, 2024

Plugin Name: Contact Form Plugin – Fastest Contact Form Builder Plugin for WordPress by Fluent Forms Key Information: Software Type: Plugin Software Slug: fluentform Software Status: Active Software Author: techjewel Software Downloads: 5,679,069 Active Installs: 400,000 Last Updated: January 18, 2024 Patched Versions: 5.1.7 Affected Versions: <= 5.1.5 Vulnerability Details: Name: Fluent Forms <= 5.1.5…

Read More
WP Plugin Vulnerabilities Image - Getwid – Gutenberg Blocks - Missing Authorization & Captcha Bypass - CVE-2023-6959 & CVE-2023-6963 | WordPress Plugin Vulnerability Report  - WordPress Maintenance

Getwid – Gutenberg Blocks – Missing Authorization & Captcha Bypass – CVE-2023-6959 & CVE-2023-6963 | WordPress Plugin Vulnerability Report 

By Your WP Guy / Jan 17, 2024

Plugin Name: Getwid – Gutenberg Blocks Key Information: Software Type: Plugin Software Slug: getwid Software Status: Active Software Author: jetmonsters Software Downloads: 1,066,235 Active Installs: 50,000 Last Updated: January 25, 2024 Patched Versions: 2.0.5 Affected Versions: <= 2.0.4 Vulnerability Details – Section 1: Name: Getwid – Gutenberg Blocks <= 2.0.4 Title: Missing Authorization to Recaptcha…

Read More
WP Plugin Vulnerabilities Image - Formidable Forms Vulnerability – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder - Authenticated (Administrator+) Stored Cross-Site Scripting - CVE-2023-6842 | WordPress Plugin Vulnerability Report  - WordPress Maintenance

Formidable Forms Vulnerability – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder – Authenticated (Administrator+) Stored Cross-Site Scripting – CVE-2023-6842 | WordPress Plugin Vulnerability Report 

By Your WP Guy / Jan 8, 2024

Plugin Name: Formidable Forms – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder Key Information: Software Type: Plugin Software Slug: formidable Software Status: Active Software Author: sswells Software Downloads: 19,370,348 Active Installs: 300,000 Last Updated: January 8, 2024 Patched Versions: 6.7.1 Affected Versions: <= 6.7 Vulnerability Details: Name: Formidable Forms <= 6.7…

Read More
superman pushing people over the steep hill on a r 2023 11 27 04 51 48 utc - Troubleshooting Tips: Pinpointing the Root Causes of Fluctuating Website Speeds - WordPress Maintenance

Troubleshooting Tips: Pinpointing the Root Causes of Fluctuating Website Speeds

By Your WP Guy / Dec 26, 2023

Nothing sabotages the user experience quite like a website that loads at glacial speeds. One second your site is zipping along smoothly, and the next it’s sputtering slower than a dial-up connection. These frustrating fluctuations not only alienate your visitors, but also directly impact your revenue and search engine visibility. So what causes these vexing…

Read More
WP Plugin Vulnerabilities Image - WP Shortcodes Plugin Vulnerability - Authenticated (Contributor+) Stored Cross-Site Scripting - CVE-2023-6488 | WordPress Plugin Vulnerability Report - WordPress Maintenance

WP Shortcodes Plugin Vulnerability – Authenticated (Contributor+) Stored Cross-Site Scripting – CVE-2023-6488 | WordPress Plugin Vulnerability Report

By Your WP Guy / Dec 18, 2023

Plugin Name: WP Shortcodes Plugin Key Information: Software Type: Plugin Software Slug: shortcodes-ultimate Software Status: Active Software Author: gn_themes Software Downloads: 18,131,157 Active Installs: 600,000 Last Updated: December 18, 2023 Patched Versions: <= 7.0.0 Affected Versions: 7.0.1 Vulnerability Details: Name: WP Shortcodes Plugin – Shortcodes Ultimate <= 7.0.0 – Authenticated (Contributor+) Stored Cross-Site Scripting Title: Authenticated (Contributor+) Stored Cross-Site Scripting Type: Improper Neutralization of Input During Web…

Read More
WP Plugin Vulnerabilities Image - MW WP Form Vulnerability - Improper Limitation of File Name to Unauthenticated Arbitrary File Deletion - CVE-2023-6559 | WordPress Plugin Vulnerability Report - WordPress Maintenance

MW WP Form Vulnerability – Improper Limitation of File Name to Unauthenticated Arbitrary File Deletion – CVE-2023-6559 | WordPress Plugin Vulnerability Report

By Your WP Guy / Dec 15, 2023

Plugin Name: MW WP Form Key Information: Software Type: Plugin Software Slug: mw-wp-form Software Status: Active Software Author: inc2734 Software Downloads: 1,536,050 Active Installs: 200,000 Last Updated: December 15, 2023 Patched Versions: 5.0.4 Affected Versions: <= 5.0.3 Vulnerability Details: Name: MW WP Form <= 5.0.3 – Improper Limitation of File Name to Unauthenticated Arbitrary File Deletion Title: Improper Limitation of File Name to Unauthenticated Arbitrary File…

Read More