Announcements

CVE-2026-18432 (matched: wordpress)

  • 17th August 2026
A security vulnerability has been identified in the Frontend Admin by DynamiApps WordPress plugin, affecting all versions up to and including 3.29.9. This flaw allows attackers to gain full administrator-level access to your website, giving them complete control over your site. They could change your login credentials, access private customer or ...
Continue reading

CVE-2026-16098 (matched: wordpress)

  • 17th August 2026
A security flaw tracked as CVE-2026-16098 has been found in the ProSolution WP Client plugin for WordPress, affecting all versions up to and including 2.0.10. This vulnerability allows anyone visiting your site (even if they are not logged into your WordPress dashboard) to upload files to your site without permission.The issue stems from missing ...
Continue reading

CVE-2026-14524 (matched: wordpress)

  • 17th August 2026
A security flaw has been found in the ProSolution WP Client plugin for WordPress, impacting all versions up to and including 2.0.8. The plugin does not properly validate file paths, which allows unauthenticated attackers (people who do not have login credentials for your WordPress site) to easily delete arbitrary files stored on your web server, ...
Continue reading

CVE-2026-18855 (matched: wordpress)

  • 17th August 2026
A security vulnerability has been found in the Link Library plugin for WordPress, affecting all versions up to and including 7.9.4. The plugin does not properly validate file paths, which could let unauthenticated attackers delete files stored on your website’s server. If attackers delete the right critical files—such as the core WordPress ...
Continue reading