TranslatePress WordPress plugin flaw lets unauthenticated attackers hijack admin accounts and compromise websites.
A critical vulnerability in the TranslatePress multilingual plugin, installed on over 400,000 WordPress sites, allows ...
Two miniOrange SAML WordPress plugin auth bypasses were exploited while paid editions never appeared in any vulnerability ...
WordPress SAML SSO vulnerability in the miniOrange plugin is being actively exploited -- attackers can log in as any ...
Threat actors have been hacking WordPress websites by exploiting two recently patched vulnerabilities affecting a MiniOrange ...
WordPress sites face active attacks exploiting two miniOrange SAML flaws that can be chained to bypass authentication and ...
Two critical miniOrange SAML 2.0 SSO flaws let unauthenticated attackers take over WordPress accounts, including admins.
Attackers are scanning for two miniOrange SAML flaws, including CVE-2026-15981, that can bypass login and grant WordPress ...
A critical security vulnerability in the Pods WordPress plugin could allow unauthenticated attackers to seize ...
Apple has started sending some users push notifications warning that they have been targeted with specific malware. No specific information about the threat Apple detected is available. While ...
BdThemes' compromised JSON feed exploits XSS in seven WordPress plugins, creating rogue admins and installing a PHP web shell without plugin updates.
The WP2Shell vulnerability chain affects over 500 million sites. How it was discovered says more about the future of cybersecurity than the bug itself. The post The $25 AI Exploit That Exposed A ...