A security vulnerability has been found in the Solace Extra plugin for WordPress, which impacts all versions of the plugin up to and including 1.6.0.
The flaw occurs because the plugin does not properly check that users have the correct permissions to run a key data import feature. This permission check is accessible to any user logged into your ...
Continue reading
A security vulnerability has been found in the Frontend Admin by DynamiApps plugin for WordPress, impacting all versions up to and including 3.29.9. This is a privilege escalation flaw, meaning an unauthorized person could gain full administrator-level access to your WordPress site.The vulnerability can be exploited in two common scenarios: if you ...
Continue reading
A security flaw has been identified in the ProSolution WP Client plugin for WordPress, a common tool used to add job portal features to websites. All versions of the plugin up to and including 2.0.10 are affected by this vulnerability.The issue allows unauthenticated attackers (people who do not have login access to your WordPress dashboard) to ...
Continue reading
A security flaw tracked as CVE-2026-14524 has been identified in the ProSolution WP Client plugin for WordPress, impacting all versions up to and including 2.0.8. The vulnerability stems from insufficient validation of file paths when the plugin processes file deletion requests.This flaw allows unauthenticated attackers (people who do not have ...
Continue reading