WordPress Vulnerability & Patch Roundup April 2023

Vulnerability reports and responsible disclosures are essential for website security awareness and education. Automated attacks targeting known software vulnerabilities are one of the leading causes of website compromises.

To help educate website owners on emerging threats to their environments, we’ve compiled a list of important security updates and vulnerability patches for the WordPress ecosystem this past month.

The vulnerabilities listed below are virtually patched by the Sucuri Firewall and existing clients are protected.

Continue reading WordPress Vulnerability & Patch Roundup April 2023 at .

More great articles

Threat Advisory: Monitoring CVE-2022-42889 “Text4Shell” Exploit Attempts

On October 17, 2022, the Wordfence Threat Intelligence team began monitoring for activity targeting CVE-2022-42889, or “Text4Shell” on our network…

Read Story

Wordfence Intelligence Weekly WordPress Vulnerability Report (Mar 13, 2023 to Mar 19, 2023)

Last week, there were 92 vulnerabilities disclosed in 76 WordPress Plugins and 7 WordPress themes that have been added to…

Read Story

classicpartnerships.com redirect malware

We're getting inquiries about a new malware redirect affecting WordPress sites - classicpartnerships.com.  Malicious URLs: hxxps://scripts.classicpartnerships[.]com/train.js hxxps://event.classicpartnerships[.]com/c.php?id=325-34675473-24-6758 hxxps://event.classicpartnerships[.]com/s.php?id=463-24-745783-2 hxxps://event.classicpartnerships[.]com/go.php?id=5325-1285453-12-334 hxxps://rosevertical[.]online/go/mvrtkmbvmi5denbs…

Read Story

Emergency WordPress Help

One of our techs will get back to you within minutes.