wordpress

Back Open Paginator
14.04.2026 01:22
wordfence (@wordfence@mastodon.social)

200,000 WordPress Sites Affected by Arbitrary File Deletion Vulnerability in Perfmatters WordPress Plugin

An arbitrary file deletion vulnerability in the PerfMatters plugin affects over 200,000 WordPress sites, allowing unauthenticated attackers to delete files such as wp-config.php and potentially trigger site takeover or remote code execution.

Update to PerfMatters version 2.6.0 to patch the issue.

youtube.com/shorts/LQm6iXeGcIc




Show Original Post


14.04.2026 00:53
curtismchale (@curtismchale@mastodon.social)

Rate Limiting WordPress AJAX Handlers with Transients

sfndesign.ca/rate-limiting-wor




Show Original Post


14.04.2026 00:00
post (@post@lemmings.world)

Someone Bought 30 WordPress Plugins and Planted a Backdoor in All of Them.

lemmings.world/post/44215310




Show Original Post


13.04.2026 23:33
adlerweb (@adlerweb@social.adlerweb.info)

#WordPress demonstriert grade wieder, warum automatische Updates ggf. eine dumme Idee sein können. Ein shady Typ hat mehr 30+ Plugins aufgekauft und letzten Oktober neue Versionen veröffentlicht. Vorgeblich um mit neueren WordPress-Installationen kompatibel zu bleiben. Achja, und ne Backdoor war auch mit drin. Vor ein paar Wochen ist die dann aktiv gegangen und hat Code nachgeladen. Inzwischen hat WP die Plugins aus ihrem Paketmanager gelöscht.

anchor.host/someone-bought-30-




Show Original Post


13.04.2026 23:17
wpnewsio (@wpnewsio@mastodon.social)

In this blog we will talk about how to easily find vulnerabilities in WordPress plugins using static analysis tools that support PHP (such as Semgrep) and trying out AI Large[…]
 

ift.tt/NkonVqJ




Show Original Post


13.04.2026 22:40
flatplanet (@flatplanet@mastodon.ie)

#homeserver #upgrades - replacement of CPU, motherboard, and OS disk this week. #Debian #trixie as the base. Aiming to do a bit of a cleanup as I go - ideally #containerising where possible, no VMs

So far;
* Unifi Network Server ❌ AP couldn't find it as a container. Installer script ✅
* #Wordpress ✅ some permissions fiddling required for compose
* #tvheadend ✅ some path fiddling for compose
* #zfs ✅ flawless detection and import




Show Original Post


13.04.2026 22:38
codemonkeymike (@codemonkeymike@fosstodon.org)

Ok #webDev peeps. I'm so curious your advice here.

What do you use these days to build and manage a simple marketing website that someone non technical could log in and update?

I have a site built in #tailwind and #php and its great, but there is no CMS behind it. #wordpress seems like crazy overkill.

Is there a new open source minimalist CMS out there that people use? What's the new hottness?




Show Original Post


13.04.2026 22:17
metin (@metin@graphics.social)

Someone Bought 30 WordPress Plugins and Planted a Backdoor in All of Them.

anchor.host/someone-bought-30-

#WordPress #WebDev #InfoSec #security #safety #malware #plugin




Show Original Post


13.04.2026 22:09
talentodigital (@talentodigital@mastodon.social)

Servicios WordPress

Te podemos ayudar creando una web desde cero con WordPress o mejorando la que tienes actualmente.

👉🏻 talentodigital.com/servicios-w





Show Original Post


13.04.2026 22:08
andyhuey (@andyhuey@mastodon.social)

Content warning:#Linkspam: 510, supplychain, wordpress


RE: digipres.club/@dsalo/116399173

I should probably review my plugins...




Show Original Post


13.04.2026 21:53
WordCampCanada (@WordCampCanada@wptoots.social)

💙 What has the WordPress community made possible for you?

Your first WordCamp, first volunteer moment, first contribution, or a connection that helped you grow.

As we build toward WordCamp Canada 2026, share your story and inspire someone’s first step.

#WordCampCanada #WCEH2026 #WordPress





Show Original Post


13.04.2026 21:45
wordfence (@wordfence@mastodon.social)

Attackers Actively Exploiting Critical Vulnerability in Kali Forms Plugin

A critical Remote Code Execution vulnerability (CVE-2026-3584, CVSS 9.8) in Kali Forms with 10,000+ active installations is under active attack. Over 312,200 exploit attempts blocked.

Update to version 2.4.10.

wordfence.com/blog/2026/04/att





Show Original Post


1 ...95 96 97 98 99 100 101 102 103 104 105 ...820
UP