WordPress Fixes Critical PHP Object Injection Issue Leading to Code Execution

WordPress Fixes Critical PHP Object Injection Issue Leading to Code Execution

Information disclosure bug with high CVSS score also patched

Info of 685 Million Users at Risk Because of Multiple Branch.io XSS Flaws

Info of 685 Million Users at Risk Because of Multiple Branch.io XSS Flaws

The DOM-based XSS vulnerabilities are now fixed

WordPress Rolls Out Major Security Patch, Fixes XSS and SQL Injection Bugs

WordPress Rolls Out Major Security Patch, Fixes XSS and SQL Injection Bugs

New WordPress update comes just a few weeks after the latest

  • Security
  • By Catalin Cimpanu
  • September 27th, 2016
Google Releases Two Chrome Extensions for XSS Discovery and Mitigation

Google Releases Two Chrome Extensions for XSS Discovery and Mitigation

Google says it paid over $1.2 million just for XSS bugs

Even Google Search Suffers from XSS Flaws

Even Google Search Suffers from XSS Flaws

Google to security researcher: Nice catch!

SNMP Port Scans Increase Following Rapid7 Vulnerability Report

SNMP Port Scans Increase Following Rapid7 Vulnerability Report

High-end NMS products affected by several security issues

WordPress 4.6.1 Security Update Is Out, Time to Update Peeps

WordPress 4.6.1 Security Update Is Out, Time to Update Peeps

WP 4.6.1 fixes two cross-site scripting (XSS) bugs

Firefox Adds Protection for MIME Confusion Attacks

Firefox Adds Protection for MIME Confusion Attacks

New MIME confusion attack mitigations added to Firefox 50

110 Rogue Servers Found on Tor Network During 72-Day Experiment

110 Rogue Servers Found on Tor Network During 72-Day Experiment

A quarter of these servers attempted to carry out SQL injection and XSS attacks on fellow Tor relays

WooCommerce WP Stores Affected by Image-Based XSS Vulnerability

WooCommerce WP Stores Affected by Image-Based XSS Vulnerability

Update to WooCommerce 2.6.3 as soon as possible

Website Takeover Issue Fixed in WordPress' Most Popular Plugin

Website Takeover Issue Fixed in WordPress' Most Popular Plugin

All in One SEO Pack affected by stored XSS issue

Zero-Days in BMW Web Portal Let Hackers Tamper with Customer Cars

Zero-Days in BMW Web Portal Let Hackers Tamper with Customer Cars

BMW was notified in February but has failed to issue a patch

Caja Toolkit Vulnerabilities Exposed Google Docs Domain to XSS Attacks

Caja Toolkit Vulnerabilities Exposed Google Docs Domain to XSS Attacks

XSS issues found on Google Docs and Developers domains

WordPress 4.5.3 Fixes Bug That Allowed Password Change via Stolen Cookies

WordPress 4.5.3 Fixes Bug That Allowed Password Change via Stolen Cookies

WordPress team fixes 8 security issues in total

Average Bug Bounty Payouts Are Increasing

Average Bug Bounty Payouts Are Increasing

XSS vulnerabilities accounted for two-thirds of all bug submissions on the Bugcrowd bug bounty platform

SQL Injections and LFI Accounted for over Three-Quarters of All Web Attacks

SQL Injections and LFI Accounted for over Three-Quarters of All Web Attacks

Brazil rises as second attack source thanks to new cloud data centers opened in the country last year

Stored XSS in Jetpack Plugin Puts over One Million WordPress Sites at Risk

Stored XSS in Jetpack Plugin Puts over One Million WordPress Sites at Risk

Users should update to Jetpack 4.0.3 as soon as possible

 
Want more? Browse: