A security issue affects version 5.2.11 of the Ninja Tables Pro WordPress plugin. The compromised version of the plugin was distributed via a decommissioned, no longer official update server for the tool, so users who installed or updated to this specific version through that old server may have received a tampered, malicious copy instead of the ...
Continue reading
A security flaw has been identified in AlanWeb SCADA software. The flaw means the software does not check if people are authorized to access certain system folders, so it does not verify that visitors have permission to view or interact with files stored in those locations.
This gap allows unauthorized attackers to read all files in these ...
Continue reading
A security vulnerability has been discovered in the ARForms plugin, a popular WordPress tool for building contact forms, surveys, quizzes and popup forms. The flaw impacts all versions of the plugin up to and including version 1.8.5, and allows unauthenticated attackers (people who do not have login credentials for your website) to submit ...
Continue reading
A security vulnerability has been found in the Solace Extra plugin for WordPress, which impacts all versions of the plugin up to and including 1.6.0.
The flaw occurs because the plugin does not properly check that users have the correct permissions to run a key data import feature. This permission check is accessible to any user logged into your ...
Continue reading