MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar <= 5.9.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Podcast RSS Feed 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
Custom Login Page Styler <= 7.1.1 - Missing Authorization to Authenticated (Subsciber+) Log Deletion and Session Termination 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
Order Export for WooCommerce <= 3.24 - Unauthenticated Sensitive Information Exposure Through Unprotected Directory 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
Shared Files – Frontend File Upload Form & Secure File Sharing <= 1.7.42 - Limited Unauthenticated Stored Cross-Site Scripting via File Upload 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
Food Menu – Restaurant Menu & Online Ordering for WooCommerce <= 5.1.4 - Missing Authorization to Authenticated (Subscriber+) Settings Update 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
HT Event – WordPress Event Manager Plugin for Elementor <= 1.4.7 - Authenticated (Contributor+) Sensitive Information Exposure via HT Event: Sponsor 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
Contact Form and Calls To Action by vcita <= 2.7.1 - Missing Authorization to Authenticated (Subscriber+) Contact/Widget Toggle 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
Link Fixer <= 3.4 - Unauthenticated Stored Cross-Site Scripting 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
Ai Image Alt Text Generator for WP <= 1.0.6 - Reflected Cross-Site Scripting 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article
Contact Form and Calls To Action by vcita <= 2.7.1 - Authenticated (Contributor+) Stored Cross-Site Scripting 30 January 2025 · Trust & Safety (Threat Alert)~ #CyberAdvisory, #InfoSec, #ThreatIntelligenceStay updated on cybersecurity threats to safeguard your systems and data from... Read Full Article