Easy WP SMTP plugin vulnerability threatens 300k WordPress websites
https://blog.threatpress.com/easy-wp-smtp-plugin-vulnerability/Easy WP SMTP plugin gets a lot of attention these days due to zero-day (0-day) vulnerability disclosed recently. Why it gets so much attention? Well maybe because this plugin has more than 300.000 active...Easy WP SMTP <= 1.3.9 – Unauthenticated Arbitrary wp_options Import
https://wpvulndb.com/vulnerabilities/9237 Source: Security Feed
More on Dnsden[.]biz Swipers and Radix Obfuscation
http://feedproxy.google.com/~r/sucuri/blog/~3/p35239WlB2o/more-on-dnsden-biz-swipers-and-radix-obfuscation.html After recent publication of the Uncommon Radixes Used in Malware Obfuscation article, we found an interesting Twitter thread involving @EKFiddle and...WP Support Plus Responsive Ticket System <= 9.1.1 – Stored XSS
https://wpvulndb.com/vulnerabilities/9235 Source: Security FeedBetter Search 2.2.2 – Unauthenticated SQL Injection
https://wpvulndb.com/vulnerabilities/9236 Source: Security Feed
Arbitrary Directory Deletion in WP-Fastest-Cache
http://feedproxy.google.com/~r/sucuri/blog/~3/dJRlgHKTUzY/arbitrary-directory-deletion-in-wp-fastest-cache.html The WP-Fastest-Cache plugin authors released a new update, version 0.8.9.1, fixing a vulnerability (CVE-2019-6726) present during its install alongside the...