A security flaw has been found in the ProSolution WP Client plugin for WordPress, which affects all versions up to and including 2.0.10. This flaw lets people who do not have admin access to your WordPress site upload harmful files that can run code on your website.The security check meant to block unapproved file uploads is accidentally visible ...
Continue reading
A security vulnerability has been identified in the ProSolution WP Client plugin for WordPress, affecting all versions up to and including 2.0.8. The flaw stems from the plugin not properly validating file paths when processing file deletion requests, creating a security gap for sites using this tool.This gap makes it possible for attackers who do ...
Continue reading
A security flaw has been found in the Link Library plugin for WordPress, affecting all versions up to and including 7.9.4. This flaw allows attackers who are not logged into your website to delete any file stored on your site's server, but only under specific conditions.For the flaw to be exploited, the plugin's "Delete local file on link ...
Continue reading
The Pods plugin for WordPress, a tool used to build custom content types and fields for websites, has a security vulnerability affecting all versions up to and including 3.3.9. This flaw breaks the plugin's standard access checks, so unauthenticated attackers (people who do not have authorized login access to your site) can bypass all normal ...
Continue reading