A security flaw has been identified in the WS Form LITE drag-and-drop contact form builder plugin for WordPress, a tool used to create custom forms on websites. The flaw impacts all versions of the plugin up to and including version 1.10.80, and stems from how the plugin handles data submitted through your site’s forms.This specific ...
Continue reading
A security flaw has been found in the WS Form LITE drag-and-drop contact form plugin for WordPress, which impacts all versions up to and including 1.10.80. The vulnerability allows people who don’t have login access to your WordPress site to inject harmful code into your site’s server by submitting specially crafted entries through forms built ...
Continue reading
A security flaw has been found in the Mailgun for WordPress plugin, a common tool used to send and manage emails from WordPress websites, affecting all versions up to and including 2.2.0.
The flaw exists because the plugin does not properly validate user input when processing address list requests. This allows unauthenticated attackers to send ...
Continue reading
A security vulnerability has been identified in TrueConf Server, a tool many users deploy for video conferencing and team communication on their hosted services. The flaw exists because a critical core function of the software lacks required authentication checks.If an attacker has network access to the server’s 4307/TCP port, they could exploit ...
Continue reading