17th Nov 2023
Slider Revolution - Vulnerabilities Disclosed
Two vulnerabilities have recently been disclosed in the widely used Slider Revolution (revslider) plugin.
Author+ Arbitrary File Upload vulnerability <= 6.6.15 (CVSS score: 8.4)
Cross Site Scripting (XSS) vulnerability <= 6.6.14 (CVSS score: 6.5)
For more details, please see this PatchStack page.
Due to the fact that Revolution ...
26th Oct 2023
WordPress 6.4 Fieldguide
WordPress 6.4 is releasing soon, in the meantime, here's the WordPress 6.4 fieldguide.
13th Oct 2023
WordPress 6.3.2 maintenance & security release
WordPress 6.3.2 has been released and includes important security fixes.
WordPress core automatically installs security updates, however at time of writing many sites have not yet updated. Therefore, we are now pre-emptively pushing out 6.3.2 to all WP NET customers.
Also note that this update is back-ported to previous WordPress versions, from ...
13th Oct 2023
Security Alert: Optimize Database After Deleting Revisions plugin
The Optimize Database After Deleting Revisions plugin has a reported CSRF vulnerability. Affected verison is 5.1 and below.
At time of writing, no patch has yet been made available.
The plugin has been temporarily removed from the WordPress plugin repository.
This plugin has been closed as of 29 September 2023 and is not available for ...