Address

30 N Gould St Ste N, Sheridan, WY 82801

Phone number

+212 681 53 04 05

Email

contact@skyweb3agency.com

BuddyPress WordPress Vulnerability May Impact Up To 100,000 Sites

A newly disclosed security vulnerability waffects the BuddyPress plugin, a WordPress plugin installed in over 100,000 websites. The vulnerability, given a threat level rating of 7.3 (high),  enables unauthenticated attackers to execute arbitrary shortcodes. BuddyPress WordPress Plugin The BuddyPress plugin enables WordPress sites to create community features such as user profiles, activity streams, private messaging, […]

Read more

10Web WordPress Photo Gallery Plugin Vulnerability

A security advisory was published about a vulnerability in the Photo Gallery by 10Web plugin that has over 200,000 installations. The vulnerability affects how the plugin handles image comments, exposing some sites to unauthorized data modification by unauthenticated attackers (meaning that attackers do not need to register with the site). The Photo Gallery by 10Web […]

Read more

NotificationX WordPress WooCommerce Plugin Vulnerabilities Impact 40k Sites

A vulnerability advisory was published for the NotificationX FOMO plugin for WordPress and WooCommerce sites, affecting more than 40,000 websites. The vulnerability, which is rated at a 7.2 (High) severity level, enables unauthenticated attackers to inject malicious JavaScript that can execute in a visitor’s browser when specific conditions are met. NotificationX – FOMO Plugin The […]

Read more

WordPress Advanced Custom Fields Extended Plugin Vulnerability

An advisory was published about a vulnerability in the popular Advanced Custom Fields: Extended WordPress plugin that is rated 9.8, affecting up to 100,000 installations. The flaw enables unauthenticated attackers to register themselves with administrator privileges and gain full control of a website and all settings. Advanced Custom Fields: Extended Plugin The Advanced Custom Fields: […]

Read more

19 WordPress Alternatives: From Simple Builders To Enterprise CMS

WordPress powers hundreds of millions of websites. But when issues occur internally, the vulnerability of relying on a single platform becomes apparent. WordPress isn’t the only content management system (CMS) option. There’s a diverse marketplace of publishing platforms for those seeking alternatives. This guide provides an overview of leading WordPress alternatives across key website categories. […]

Read more

WordPress Membership Plugin Flaw Exposes Sensitive Stripe Data

An advisory was published about a vulnerability discovered in the Membership Plugin By StellarWP which exposes sensitive Stripe payment setup data on WordPress sites using the plugin. The flaw enables unauthenticated attackers to launch attacks and is rated 8.2 (High). Membership Plugin By StellarWP The Membership Plugin – Restrict Content By StellarWP is used by […]

Read more

All In One SEO WordPress Vulnerability Affects Over 3 Million Sites

A security vulnerability was discovered in the popular All in One SEO (AIOSEO) WordPress plugin that made it possible for low-privileged users to access a site’s global AI access token, potentially allowing them to misuse the plugin’s artificial intelligence features and could allow attackers to generate content or consume credits using the affected site’s AIOSEO […]

Read more