WordPress Vulnerability Report – September 27, 2023

Written by

Dan Knauss
on

September 27, 2023

Last Updated on September 27, 2023

Since last week, 48 total vulnerabilities have emerged in public disclosure. They may affect over three million WordPress sites. There are 39 plugin vulnerabilities with security patches, so run those updates!

Additionally, there are nine plugin vulnerabilities with no patch available yet. If you use an unpatched plugin or theme, check their vendors’ intentions and progress on a security release. Suppose no patch is forthcoming or the vulnerable software has been marked “closed” and dropped from the official WordPress theme and plugin repositories. In that case, you should consider deactivation and removal in favor of alternative solutions.

WordPress Core Vulnerabilities — Patched

  • No new WordPress core vulnerabilities were disclosed this week.

WordPress core is very secure when it’s properly configured

[…]

WordPress Vulnerability Report – September 27, 2023 Keep Reading »
#Blogging #WordPress #BloggingTips #BlogChat

A WordPress Commenter

Recent Posts

What Happened at WordCamp Europe 2026

WordCamp Europe, the biggest WordPress conference in Europe, spent the first week of June in…

1 week ago

Protect The Shire

tl;dr: Temporary 24-hour cooldown period for plugin/theme releases before auto-updates. AI can give defenders an…

1 week ago

Performance Chat Summary: 2 June 2026

The full chat log is available beginning here on Slack. WordPress Performance Trac tickets @b1ink0…

2 weeks ago

WP23

WordPress at 23 is simultaneously both the strongest and most precarious it’s ever been. Last…

3 weeks ago

Looking Ahead to WordCamp Europe 2026

June 4-6, 2026 | ICE Kraków Congress Centre, Kraków, Poland WordCamp Europe 2026 will bring…

3 weeks ago

WordPress 7.0 “Armstrong”

Every WordPress release celebrates an artist who has made an indelible mark on the world…

4 weeks ago