エックスサーバーがWordPressの脆弱性「wp2shell」への対応として、影響対象の顧客サイトを7月31日頃に更新していました。公表は8月24日、個別メールは25日です。更新先は7.0.2と6.9.5で、その後さらに3回のリリースが出ています。
TranslatePress WordPress plugin flaw lets unauthenticated attackers hijack admin accounts and compromise websites.
A critical vulnerability in the TranslatePress multilingual plugin, installed on over 400,000 WordPress sites, allows ...
Two miniOrange SAML WordPress plugin auth bypasses were exploited while paid editions never appeared in any vulnerability ...
WordPress SAML SSO vulnerability in the miniOrange plugin is being actively exploited -- attackers can log in as any ...
Threat actors have been hacking WordPress websites by exploiting two recently patched vulnerabilities affecting a MiniOrange ...
WordPress sites face active attacks exploiting two miniOrange SAML flaws that can be chained to bypass authentication and ...
Two critical miniOrange SAML 2.0 SSO flaws let unauthenticated attackers take over WordPress accounts, including admins.
Attackers are scanning for two miniOrange SAML flaws, including CVE-2026-15981, that can bypass login and grant WordPress ...
A critical security vulnerability in the Pods WordPress plugin could allow unauthenticated attackers to seize ...
Selular.ID – Pakar keamanan siber mengungkapkan temuan bahaya mengenai lebih dari 2.000 situs web berbasis WordPress yang ...
Apple has started sending some users push notifications warning that they have been targeted with specific malware. No specific information about the threat Apple detected is available. While ...