Blog Posts

Critical Account Takeover Patched in Really Simple Security Plugin

Published on November 14, 2024

This blog post is about the Realy Simple Security plugin vulnerability. If you’re a Realy Simple Security user, please update the free, pro, and pro multisite plugin to at least version 9.1.2. If you are a Patchstack customer, you are protected from this vulnerability already, and no further action is required from you. For plugin […]

Read more →

Nearly 1000 Plugins Closed During WordPress Security Cleanup

Published on November 13, 2024

Patchstack is always looking for new ways to make the WordPress ecosystem safer by organizing various events for ethical hackers and security researchers. Our experiments sometimes lead to unexpected results. Also, these events sometimes uncover issues that were overlooked before. Our latest experiment took place in October. We announced a special event for our Bug […]

Read more →

WordPress Salts: What Are They, How They Work, and How to Use Them

Published on October 30, 2024

If you have been developing WordPress websites, your eyes might have wandered to the ‘WordPress salts’ section of the wp.config.php file. Have you ever wondered what these salts are and why we need them? If you answered ‘Yes’, then you are in the right place. In this post, you will learn everything you need to […]

Read more →

Rare Case of Privilege Escalation Patched in LiteSpeed Cache Plugin

Published on October 29, 2024

The vulnerability in the LiteSpeed Cache plugin was originally reported by Patchstack Alliance community member TaiYou to the Patchstack bug bounty program for WordPress. We are collaborating with the researcher to release the content of this security advisory article. This blog post is about the LiteSpeed plugin vulnerability. If you’re a LiteSpeed user, please update […]

Read more →

Critical Vulnerabilities in Ultimate Membership Pro Plugin

Published on October 17, 2024

This blog post is about Ultimate Membership Pro plugin vulnerabilities. If you’re an Ultimate Membership Pro user, please update the theme and plugin to version 12.8 or higher. If you are a Patchstack customer, you are protected from this vulnerability already, and no further action is required from you. For plugin developers, we have security audit […]

Read more →

The Best WordPress Activity Log Plugins

Published on October 9, 2024

Are you managing a large WordPress website with the help of a team? Do you constantly find yourself asking, “Who made this change?” Did someone break your WordPress website, and are you looking to get to the root of this issue? If you answered ‘yes’ to any of these questions, you’re in the right place […]

Read more →
Previous Page 7 of 40 (398 total posts) Next