Published on October 6, 2023
UPDATE: We want to thank ThemeForest for reacting swiftly to our report, and for removing the vulnerable premium theme mentioned here from their marketplace.Recently a friend of mine asked me to set up a WordPress site for her using a premium WordPress theme she had bought – I quickly found the theme came with some […]
Read more →
Published on September 27, 2023
This blog post is about the vulnerability in the Simple Membership plugin. If you’re a Simple Membership user, please update the plugin to at least version 4.3.5. Patchstack users are protected from the vulnerability. For plugin developers, we have security audit services and Threat Intelligence Feed API for hosting companies. About the Simple Membership Plugin The plugin Simple Membership […]
Read more →
Published on September 15, 2023
This blog post is about the vulnerability in Essential Addons for Elementor. If you’re an Essential Addons for Elementor user, please update the plugin to at least version 5.8.9. Patchstack users are protected from the vulnerability. For plugin developers, we have security audit services and Threat Intelligence Feed API for hosting companies. About the Essential Addons for the Elementor […]
Read more →
Published on September 6, 2023
This blog post is about the Flatsome theme vulnerability. If you’re a Flatsome user, please update the plugin to at least version 3.17.6. Patchstack users are protected from the vulnerability. For plugin developers, we have security audit services and Threat Intelligence Feed API for hosting companies. About the Flatsome Theme The theme Flatsome (versions 3.17.5 and below, premium version), […]
Read more →
Published on August 31, 2023
This security advisory is written about a critical Forminator vulnerability initially disclosed by MEHMET KELEPÇE. Patchstack users have received a vPatch to protect their site against this vulnerability. This blog post is about the Forminator plugin vulnerability. If you’re a Forminator user, please update the plugin to at least version 1.25.0. Patchstack users are protected from the […]
Read more →
Published on August 30, 2023
This blog post is about the All-in-One WP Migration Extensions vulnerability. If you’re an All-in-One WP Migration Extensions user specified below, please update the plugin to the patched version mentioned in this article. Patchstack users are protected from the vulnerability. For plugin developers, we have security audit services and Threat Intelligence Feed API for hosting companies. About the All-in-One […]
Read more →
Published on August 24, 2023
This blog post is about the Jupiter X Core plugin vulnerability. If you’re a Jupiter X user, please update the plugin to at least version 3.4.3. Patchstack users are protected from the vulnerability. For plugin developers, we have security audit services and Threat Intelligence Feed API for hosting companies. About the Jupiter X Core Plugin The plugin Jupiter X […]
Read more →
Published on August 10, 2023
This blog post is about the Avada theme and plugin vulnerability. If you’re a Avada user, please update the Avada builder plugin to at least version 3.11.2 and Avada theme to at least version 7.11.2. Patchstack users are protected from the vulnerability. For plugin developers, we have security audit services and Threat Intelligence Feed API for hosting companies. About […]
Read more →
Published on August 3, 2023
This blog post is about the JetElements For Elementor plugin vulnerability. If you’re a JetElements For Elementor user, please update the plugin to at least version 2.6.11. Patchstack users are protected from the vulnerability. For plugin developers, we have security audit services and Threat Intelligence Feed API for hosting companies. About the JetElements For Elementor Plugin The plugin JetElements […]
Read more →
Published on July 27, 2023
This blog post is about vulnerabilities in Ninja Forms plugin vulnerabilities. If you’re a Ninja Forms user, please update the plugin to at least version 3.6.26. Patchstack users are protected from the vulnerability. For plugin developers, we have security audit services and Threat Intelligence Feed API for hosting companies. About the Ninja Forms plugin The plugin Ninja Forms versions […]
Read more →