Blog Posts

Unpatched Authenticated RCE in Oxygen and Breakdance Builder

Published on April 4, 2024

Updates since April 4, 2024 This blog post is about an unpatched Remote Code Execution (RCE) vulnerability discovered in Oxygen and Breakdance builder. At the time of publication of this security advisory article, there is still no patch available on the latest version of the affected components. We hope that the developer will be implementing […]

Read more →

Critical Vulnerabilities Patched in REHub Theme and Plugin

Published on April 3, 2024

This blog post is about the REHub theme and plugin vulnerabilities. If you’re a REHub user, please update the plugin to at least version 19.6.2 on both the theme and the plugin. Patchstack users are protected from this vulnerability. For plugin developers, we have security audit services and Enterprise API for hosting companies. About the REHub Theme and Plugin […]

Read more →

Critical Vulnerabilities Patched in WordPress Automatic Plugin

Published on March 19, 2024

This blog post is about the Automatic plugin vulnerabilities. If you’re an Automatic user, please update the plugin to at least version 3.92.1. Patchstack users are protected from this vulnerability. For plugin developers, we have security audit services and Enterprise API for hosting companies. About the Automatic Plugin The plugin Automatic (premium version), which is estimated to have over […]

Read more →

Critical Vulnerability Found in GOTMLS Plugin

Published on March 12, 2024

The vulnerability in the GOTMLS plugin was originally reported by stealthcopter to the Patchstack bug bounty program for WordPress. We are collaborating with the researcher to release the content of this security advisory article. This blog post is about the GOTMLS plugin vulnerability. If you’re a GOTMLS user, please update the plugin to at least […]

Read more →

XSS Vulnerability in LiteSpeed Cache Plugin Affecting 4+ Million Sites

Published on February 27, 2024

This blog post is about the LiteSpeed plugin vulnerability. If you’re a LiteSpeed user, please update the plugin to at least version 5.7.0.1. Patchstack users are protected from this vulnerability. For plugin developers, we have security audit services and Enterprise API for hosting companies. About the LiteSpeed Cache Plugin The plugin LiteSpeed Cache (free version), which has over 4 […]

Read more →

Announcing the Patchstack WordPress Security Weekly Newsletter

Published on February 21, 2024

When we talk about WordPress websites, we often talk about development. But security is just as crucial. After numerous requests, we’ve decided to revive our previous security newsletter, taking it one step further. We’re excited to announce the launch of Patchstack WordPress Security Weekly. In Patchstack’s WordPress Security Weekly, you will learn: And more! Crash […]

Read more →

Critical RCE Patched in Bricks Builder Theme

Published on February 19, 2024

The vulnerability in the Bricks Builder Theme was originally reported by snicco to the Patchstack bug bounty program for WordPress. We are collaborating with the researcher to release the content of this security advisory article. This blog post is about the Bricks Builder Theme vulnerability. If you’re a Bricks Builder Theme user, please update the […]

Read more →

How To Add Two-Factor Authentication To WordPress

Published on February 7, 2024

Are you worried that a password breach may have compromised your credentials? No matter whether you answered ‘yes’ or ‘no’ to that question, you should still implement multi-factor authentication to your WordPress sites. In this post, you’ll learn exactly what WordPress multi-factor authentication is, and why implementing it is a no-brainer. At the end of […]

Read more →
Previous Page 12 of 40 (398 total posts) Next