ElegantThemes (divi, extra, divi-builder) – Authenticated Stored Cross-Site Scripting (XSS)
https://wpvulndb.com/vulnerabilities/9140 Source: Security FeedWordPress 5.0 Beta 2
https://wordpress.org/news/2018/10/wordpress-5-0-beta-2/WordPress 5.0 Beta 2 is now available! This software is still in development, so we don’t recommend you run it on a production site. Consider setting up a test site to play with the new version. There...ARForms <= 3.5.1 – Unauthenticated Arbitrary File Deletion
https://wpvulndb.com/vulnerabilities/9139 Source: Security Feed
Using PHP 5 Becomes Dangerous in 2 Months
https://www.wordfence.com/blog/2018/10/php5-dangerous/WordPress, Joomla, Drupal and many other popular website CMSs were written in a programming language called PHP. PHP version 5 is about to reach end-of-life and will stop receiving security updates in two months....Pie Register <= 3.0.17 – Unauthenticated Cross-Site Scripting (XSS)
https://wpvulndb.com/vulnerabilities/9138 Source: Security Feed
Web Marketers Should Learn Security
http://feedproxy.google.com/~r/sucuri/blog/~3/emRvDW6es6M/web-marketers-should-learn-security.html Most online marketers think of themselves as T-shaped individuals. The theory behind this concept is that individuals possess a wide range of skills, with some abilities...
Saskmade[.]net Redirects
http://feedproxy.google.com/~r/sucuri/blog/~3/palCxETx31c/saskmade-net-redirects.html Earlier this week, we published a blog post about an ongoing massive malware campaign describing multiple infection vectors that it uses. This same week, we started detecting new...
OWASP Top 10 Security Risks – Part II
http://feedproxy.google.com/~r/sucuri/blog/~3/CijdZ9TSBIM/owasp-top-10-security-risks-part-ii.html It is National Cyber Security Awareness Month and in order to bring awareness to what threatens the integrity of websites, we have started a series of posts on the OWASP...