A popular WordPress plugin called ARForms, used to build contact forms, surveys, quizzes, and popups, has a security flaw in all versions up to and including 1.8.5. The issue lets anyone—even people without login access to your website—send specially crafted submissions through your ARForms forms that could inject harmful code into your ...
Continue reading
A security flaw has been identified in the Pods plugin for WordPress, a tool used to build custom content types and fields for websites. The flaw impacts all versions of the plugin up to 3.3.9. It stems from a bug in how the plugin handles certain site requests: all of its security checks (including verifying if a user is logged in and has ...
Continue reading
A security flaw has been found in specific versions of PHP, the software that runs most dynamic website features like contact forms, user login systems, and online store functionality. The issue impacts PHP 7.3.x versions older than 7.3.13, and PHP 7.4.0, but only when the software is running on Windows servers.The flaw relates to how PHP handles ...
Continue reading
A security flaw has been identified in the ARForms plugin for WordPress, a tool used to build contact forms, surveys, quizzes, and popup forms. The flaw impacts all versions of the plugin up to and including version 1.8.5.The issue allows unauthenticated attackers (people who do not have login access to your WordPress site) to send malicious data ...
Continue reading