Palo Alto Networks intends to acquire Koi, advancing agentic endpoint securityHelp Net Security·Feb 17, 00:00 UTC · Feb 17, 2026Vulnerability55
Hackers Exploiting LiteSpeed Cache Bug to Gain Full Control of WordPress SitesThe Hacker News·May 8, 14:05 UTC · May 8, 2024Vulnerability in the wildCVE-2023-4000060
New Vulnerability in Popular WordPress Plugin Exposes Over 2 Million Sites to CyberattacksThe Hacker News·May 15, 00:00 UTC · May 15, 2023Vulnerability in the wildCVE-2023-30777CVE-2023-30177CVE-2023-31144+1 CVEs60
Essential Addons for Elementor XSS Vulnerability DiscoveredInfosecurity Magazine·Feb 24, 17:00 UTC · Feb 24, 2025VulnerabilityCVE-2025-2475260
Attackers exploit Funnel Builder bug to inject e-skimmers into eSecurity Affairs·May 17, 12:25 UTC · May 17, 2026Vulnerability in the wild60
Researchers Uncover Active Exploitation of WordPress Plugin VulnerabilitiesThe Hacker News·May 30, 13:49 UTC · May 30, 2024Vulnerability in the wildCVE-2023-6961CVE-2023-40000CVE-2024-219460
Exploiting Vulnerabilities in WordPress plugins, a cybercrime trendSecurity Affairs·Feb 11, 12:04 UTC · Feb 11, 2015Vulnerability55
SecureClaw: Dual stack open-source security plugin and skill for OpenClawHelp Net Security·Feb 18, 00:00 UTC · Feb 18, 2026Vulnerability55
Drupal Releases Core CMS Updates to Patch Several VulnerabilitiesThe Hacker News·Apr 17, 21:51 UTC · Apr 17, 2019Vulnerability in the wildCVE-2019-10909CVE-2019-10910CVE-2019-109160
Experts found two flaws in Facebook for WordPress PluginSecurity Affairs·Mar 28, 20:56 UTC · Mar 28, 2021Vulnerability55
Critical Security Flaw Found in Popular LayerSlider WordPress PluginThe Hacker News·Apr 4, 04:21 UTC · Apr 4, 2024VulnerabilityCVE-2024-2879CVE-2024-1852CVE-2024-1751+1 CVEs60
Another Critical Flaw Found In Drupal Core—Patch Your Sites ImmediatelyThe Hacker News·Apr 19, 07:24 UTC · Apr 19, 2018Vulnerability55
600+ installs of WordPress Cookie Consent Plugin vulnerable. Fix it now!Security Affairs·Feb 13, 11:01 UTC · Feb 13, 2020VulnerabilityCVE-2020-841760
Unmasking the new persistent attacks on JapanCisco Talos·Mar 6, 11:00 UTC · Mar 6, 2025VulnerabilityCVE-2024-4577160
Critical flaws in NextGen Gallery WordPress plugin still impact over 500K installsSecurity Affairs·Feb 9, 15:18 UTC · Feb 9, 2021VulnerabilityCVE-2020-3594260
Critical Unpatched Flaw Disclosed in WordPress WooCommerce ExtensionThe Hacker News·Apr 26, 11:37 UTC · Apr 26, 2019Vulnerability55
Avoiding Death by a Thousand Scripts: Using Automated Content Security PoliciesThe Hacker News·Jul 12, 11:28 UTC · Jul 12, 2022Vulnerability55
Using a WordPress flaw to leverage zerologon vulnerability and attack companies’ Domain ControllersSecurity Affairs·Oct 7, 06:03 UTC · Oct 7, 2020Vulnerability in the wildCVE-2020-25213CVE-2020-147260
CVE-2026-8732: The WP Maps Pro Flaw That Lets Anyone Create a WordPress Admin Without a PasswordSecurity Affairs·Jun 1, 11:36 UTC · Jun 1, 2026Vulnerability in the wildCVE-2026-873260
WordPress LiteSpeed Cache Plugin Security Flaw Exposes Sites to XSS AttacksThe Hacker News·Oct 7, 06:13 UTC · Oct 7, 2024VulnerabilityCVE-2024-47374CVE-2024-44000CVE-2024-43917+2 CVEs60
SAP June 2025 Security Patch Day fixed critical NetWeaver bugSecurity Affairs·Jun 10, 17:31 UTC · Jun 10, 2025VulnerabilityCVE-2025-42989CVE-2025-42982CVE-2025-42983+3 CVEs60
What Developers Need to Fight the Battle Against Common VulnerabilitiesThe Hacker News·Dec 1, 11:17 UTC · Dec 1, 2022Vulnerability55
Microsoft Security Updates January 2016Kaspersky Securelist·Jan 12, 19:08 UTC · Jan 12, 2016Vulnerability in the wildCVE-2016-003460
Flawed WordPress theme may allow admin account takeover on 22,000+ sites (CVE-2025-4322)Help Net Security·May 21, 00:00 UTC · May 21, 2025VulnerabilityCVE-2025-432260
Broadcom Patches VMware Aria FlawsThe Hacker News·Jan 31, 05:49 UTC · Jan 31, 2025Vulnerability in the wildCVE-2025-22218CVE-2025-22219CVE-2025-22220+5 CVEs60
A flaw in the Forminator plugin impacts hundreds of thousands of WordPress sitesSecurity Affairs·Apr 22, 06:58 UTC · Apr 22, 2024VulnerabilityCVE-2024-28890CVE-2024-31077CVE-2024-3185760
Serious flaw found and patched in WordPress, but it might lurk in pluginsCyberScoop·Feb 19, 20:38 UTC · Feb 19, 2019Vulnerability in the wild60
Over a Third of Grafana Instances Exposed to XSS FlawInfosecurity Magazine·Jun 16, 10:15 UTC · Jun 16, 2025VulnerabilityCVE-2025-412360
Popular Page Builder WordPress plugin fixes critical issues. Update it now!Security Affairs·May 12, 15:37 UTC · May 12, 2020Vulnerability55
Critical WP Maps Pro Flaw Actively Exploited to Create Admin AccountsThe Hacker News·Jun 1, 08:45 UTC · Jun 1, 2026Vulnerability in the wildCVE-2026-873260
Multiple Flaws Found in Ninja Forms Plugin Leave 800,000 Sites VulnerableThe Hacker News·Jul 31, 06:42 UTC · Jul 31, 2023VulnerabilityCVE-2023-37979CVE-2023-38386CVE-2023-38393+2 CVEs60
Critical Flaws in WordPress Plugin Leave 10,000 Sites VulnerableInfosecurity Magazine·Jul 28, 16:05 UTC · Jul 28, 2025VulnerabilityCVE-2025-7340CVE-2025-7341CVE-2025-736060
MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution AttacksThe Hacker News·May 5, 11:56 UTC · May 5, 2026VulnerabilityCVE-2026-2901460
Critical Security Vulnerability Discovered in WooCommerce Stripe Gateway PluginThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023VulnerabilityCVE-2023-3400060
Watch out, experts warn of a critical flaw in JenkinsSecurity Affairs·Jan 26, 17:51 UTC · Jan 26, 2024VulnerabilityCVE-2024-2389760
Firefox Blocks Inline and Eval JavaScript on Internal Pages to Prevent Injection AttacksThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2019Vulnerability55
VMware Alert: Uninstall EAP Now - Critical Flaw Puts Active Directory at RiskThe Hacker News·Feb 22, 02:28 UTC · Feb 22, 2024VulnerabilityCVE-2024-22245CVE-2024-22250CVE-2024-2172660
VMWare addressed severe Code Execution vulnerabilities in several productsSecurity Affairs·Dec 21, 16:09 UTC · Dec 21, 2017VulnerabilityCVE-2017-4941CVE-2017-4933CVE-2017-4940+1 CVEs60
How LiteLLM Turned Developer Machines Into Credential Vaults for AttackersThe Hacker News·Apr 8, 10:59 UTC · Apr 8, 2026Vulnerability155