A security flaw has been found in the Multi Uploader for Gravity Forms plugin for WordPress, affecting all versions up to and including 1.1.8. This issue lets people who do not have login access to your WordPress site permanently delete any media files you have uploaded to your site, such as product images, blog photos, videos, or documents.The ...
Continue reading
A security vulnerability has been identified in the Easy Post Submission plugin for WordPress, a tool many site owners use to let visitors submit content to their websites. The flaw impacts all versions of the plugin up to and including version 2.3.0.The issue is caused by a missing permission check on a core plugin feature that was supposed to ...
Continue reading
A security vulnerability has been found in the Kadence Memberships (previously called Restrict Content) plugin for WordPress, which affects all versions up to 4.0.0. This plugin is used to manage access to members-only content and features on WordPress websites.The flaw lets unauthenticated bad actors manipulate the plugin's password reset feature ...
Continue reading
A security flaw has been identified in the N-able N-central remote IT management platform. This flaw lets attackers bypass normal login security checks for the tool by using an alternate access path, which could allow them to take over user accounts on the platform.This issue exists because an earlier patch for a previously reported security ...
Continue reading