CVE-2023-47828 - Missing Authorization in Mandrill wpMandrill – What You Need to Know
---
Introduction
A critical security vulnerability, identified as CVE-2023-47828, has been discovered in the WordPress plugin wpMandrill—a popular integration for sending emails through the
CVE-2023-48273 - Missing Authorization Vulnerability in WP OnlineSupport Preloader for Website (Versions <= 1.2.2)
In late 2023, a critical vulnerability was discovered in the popular Preloader for Website WordPress plugin, developed by WP OnlineSupport. This vulnerability, tracked as CVE-2023-48273,
CVE-2023-51682 - Missing Authorization Flaw in MC4WP (Mailchimp for WordPress) Plugin Exposes WordPress Sites
CVE-2023-51682 is a critical vulnerability discovered in the popular WordPress plugin "MC4WP: Mailchimp for WordPress." This flaw sits at the heart of thousands
CVE-2024-35746 - Exploiting Unrestricted File Upload in BuddyPress Cover (<=2.1.4.2)
If you’re running a WordPress site with social networking features, there’s a decent chance you use the BuddyPress plugin. One popular add-on for
CVE-2024-22298 - Missing Authorization in TMS Amelia Bookings Plugin Can Lead to Unauthorized Access — Detailed Breakdown
In June 2024, CVE-2024-22298 was assigned to a critical security flaw found in the widely-used TMS Amelia WordPress plugin (also known as ameliabooking). This vulnerability
Episode
00:00:00
00:00:00