A security flaw has been found in specific versions of PHP, the software that runs most dynamic website features like contact forms, user login systems, and online store functionality. The issue impacts PHP 7.3.x versions older than 7.3.13, and PHP 7.4.0, but only when the software is running on Windows servers.The flaw relates to how PHP handles ...
Continue reading
A security flaw has been identified in the ARForms plugin for WordPress, a tool used to build contact forms, surveys, quizzes, and popup forms. The flaw impacts all versions of the plugin up to and including version 1.8.5.The issue allows unauthenticated attackers (people who do not have login access to your WordPress site) to send malicious data ...
Continue reading
A security flaw (tracked as CVE-2026-18316) affects the Solace Extra plugin for WordPress, with all versions up to and including 1.6.0 impacted. The gap lets any person logged into your WordPress site, even users with only basic subscriber access, make unauthorized changes to or delete important site content.Attackers with this level of access can ...
Continue reading
There is a security vulnerability in the Frontend Admin by DynamiApps plugin for WordPress, impacting all versions up to and including 3.29.9. This is a privilege escalation flaw, meaning it lets unauthorized users gain full administrator-level access to your WordPress site.The flaw occurs because the plugin skips a key security check that ...
Continue reading