WordPress
WordPress.com servers breached, source code presumed copied
Automattic – the web development corporation behind WordPress.com – has suffered a root break-in and a compromise of several of their servers. “We have been …
WordPress 3.1.1 fixes security issues
WordPress 3.1.1 is now available. This maintenance and security release fixes almost thirty issues in 3.1. Fixes: Some security hardening to media uploads Performance …
WordPress.com target of extensive DDoS attack
WordPress.com has been targeted by an extensive DDoS attack, and the millions of blogs it hosts have been temporarily unavailable or have been experiencing occasional …
WordPress 3.0.5 security update
WordPress 3.0.5 is now available and is a security hardening update for all previous WordPress versions. This security release is required if you have any untrusted user …
WordPress 3.0.4 critical security update
Version 3.0.4 of WordPress is a very important update to apply to your sites as soon as possible because it fixes a core security bug in our HTML sanitation library, called …
WordPress Comment Rating plugin CSRF vulnerability
A vulnerability has been reported in the Comment Rating plugin for WordPress, which can be exploited by malicious people to conduct cross-site request forgery attacks, …
WordPress 3.0.2 hardens security
WordPress 3.0.2 is available and is a mandatory security update for all previous WordPress versions. This maintenance release fixes a moderate security issue that could allow …
Featured news
Resources
Don't miss
- Two new high severity WordPress vulnerabilities, patch immediately!
- Prompt injection is becoming the XSS of the web agent era
- The script, not the voice, is what makes AI voice phishing work
- The five step plan that cuts security budget waste
- CISA folds its own hard-won lessons into coordinated vulnerability disclosure guidance