Site icon Astra Security Blog

Monthly WordPress Security Roundup [June 2021]

Hello everyone, it’s Kanishk again from Astra Security, bringing you the latest in WordPress security with another version of our Monthly WordPress Security Roundup for June 2021. 

We will be discussing vulnerabilities disclosures & bug fixes in the WP core, database, plugins and themes, and some other security issues related to the WordPress CMS platform.

So, let’s get started!

Thankfully, there were no vulnerabilities discovered in the WP core this month but it is advised that you should update to the latest version of WordPress.

In addition to this, we have seen a large number of plugin and theme vulnerabilities being actively exploited by hackers. Here are those:

Vulnerabilities Bulletin for WordPress plugins:

1. W3 Total Cache

2. WP Reset

3. Jetpack

4. MC4WP: Mailchimp for WordPress

5. Smart Slider 3

6. WP Google Maps

7. WordPress Popular Posts

8. FooGallery

9. Simple 301 Redirects by BetterLinks

10. Admin Columns

11. FileBird

12. NinjaFirewall (WP Edition)

13. wpForo Forum

14. Quiz And Survey Master

15. WP SVG images

16. WP YouTube Lyte

Get the ultimate WordPress security checklist with 300+ test parameters

Vulnerabilities discovered in WordPress themes:

1. FoodBakery | Delivery Restaurant Directory WordPress Theme

2. JNews – WordPress Newspaper Magazine Blog AMP Theme

3. Jannah – Newspaper Magazine News BuddyPress AMP

That does it for this month’s WordPress Security Roundup. Make sure to update to the latest version if you are running any of the above-mentioned WordPress plugins and themes.

Websites, plugins and themes that are protected by Astra Security Suite are already secured against vulnerabilities such as XSS, RCE, CSRF, arbitrary file upload & deletion, sensitive data exposure, and SQL injection..

It is one small security loophole v/s your entire website or web application

Get your web app audited with Astra’s Continuous Pentest Solution

Check out our WP plugin security guide for plugin developers to secure WordPress plugins against vulnerability exploits and other hacking attempts.

Stay safe from any unanticipated attack and be aware of the security vulnerabilities and latest patches. From all of us here at Astra Security, have a great month ahead and see you next time.

Thank you!

Exit mobile version