Chained Quiz <= 1.0.8 – Unauthenticated SQL Injection
https://wpvulndb.com/vulnerabilities/9112 Source: Security Feed
How to Fix Your Connection is Not Private Error in Chrome (16 Tips)
https://kinsta.com/blog/your-connection-is-not-private/Kinsta works with thousands of different WordPress sites on a daily basis, so when it comes to different types of errors, we’ve pretty much seen it all. From database connection errors to the white screen of...1password vs. Dashlane
https://perishablepress.com/1password-vs-dashlane/ I was a 1password user for years. Thought it was great, everything I needed without not too much bloat, ads, etc. Then one day 1password locked everyone out. As in can’t log in with the master password. So no...Ultimate Member <= 2.0.21 – Authenticated Cross-Site Scripting (XSS)
https://wpvulndb.com/vulnerabilities/9111 Source: Security FeedUltimate Member – Unauthenticated Arbitrary File Upload (unpatched)
https://wpvulndb.com/vulnerabilities/9110 Source: Security FeedBlocking the “ReallyLongRequest” Bandit
https://perishablepress.com/blocking-reallylongrequest-bandit/ While browsing server logs, I kept seeing these super long request URIs that begin with “YesThisIsAReallyLongRequest…” and then the request string just keeps going for like 1 kilobyte...WordPress and the Blank Target Vulnerability
https://perishablepress.com/wordpress-blank-target-vulnerability/ For those who haven’t yet noticed, WordPress now adds rel=”noopener” attributes for any external links added via the link Quicktag in the Visual/RTE. So if you enable the option,...An Extensive Plan of Action for WordPress Security
https://pagely.com/blog/wordpress-security-action-plan/There’s no nice way to put this, so I’m just going to come out and say it: WordPress websites are prime targets for hackers. It’s not that WordPress itself is […] Source: Security...