WordPress plugin TranslatePress stored admin password-reset links in a database table any visitor could read without logging in. Wordfence rated the flaw CVE-2026-19632 at CVSS 9.8 and disclosed it ...
A vulnerability in the LiteSpeed Cache plugin for WordPress, which has over 6 million active installations, has been discovered allowing unauthenticated visitors to gain administrator-level access by ...
A critical authentication bypass vulnerability allows anyone to log in as an administrator user on WordPress sites running an affected version of the InfiniteWP Client because of logical mistakes in ...
A vulnerability for the very popular AMP for WP WordPress plugin with a 100 thousand active installations allows any registered user to escalate their privileges to gain administrative access to the ...
Dual update: OpenAI has released both a new administrative tool and a custom inference chip in its latest update. Admin plugin features: The plugin integrates analytics, access control, member ...
WordPress users upset at Rank Math over allegations that it creates administrator-level access without prior consent.