WordPress Vulnerability Database Adds 23 New CVEs This Month

Specific data about 23 new CVEs added to the WordPress Vulnerability Database in May 2026 is not yet widely available, as monthly vulnerability statistics...

Specific data about 23 new CVEs added to the WordPress Vulnerability Database in May 2026 is not yet widely available, as monthly vulnerability statistics...

Reports of WordPress admin accounts being sold on dark web marketplaces reflect a significant and ongoing threat to website owners.

Sucuri, one of the leading WordPress security firms, released a significant security report revealing that WordPress sites using the UpdraftPlus backup...

The widely-referenced Wordfence report claiming 12.5 million WordPress sites were attacked in October 2026 could not be verified through available sources...

WordPress released a critical security patch after researchers discovered a vulnerability affecting an estimated 12.

If your WordPress site runs the AI Engine plugin, uses the Service Finder theme, or has the Post SMTP plugin installed, there's a significant chance it...

In April 2026, WordPress.org took the unprecedented step of removing 31 plugins in a single day after discovering they had been compromised with...

A critical vulnerability discovered in a widely-used WordPress theme has enabled attackers to inject malware onto approximately 5,000 WordPress sites,...

WordPress security patches released throughout 2026 have addressed multiple critical flaws affecting the latest versions of the core platform and popular...

There is no credible evidence of an FBI warning about CVE-2026-12.5 or active exploitation of this vulnerability in WordPress sites.