Tech

Another serious WordPress plugin vulnerability could put 40,000 sites at risk of attack

Share
Share


  • Security researchers find high-severity flaw in popular WordPress plugin
  • It allowed threat actors to run malicious code remotely
  • A patch was released in late January 2025

Jupiter X Core, a popular WordPress plugin with more than 90,000 users worldwide, is vulnerable to a high-severity flaw that allows threat actors to run arbitrary files on the server, essentially giving them the ability to fully take over target websites, experts have warned.

WordPress security researchers Wordfence revealed it was found to be vulnerable to a “Local File Inclusion to Remote Code Execution” flaw, now tracked as CVE-2025-0366. It has a severity score of 8.8/10 (high) and affects all versions up to, and including 4.8.7.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Can a foreign government hack WhatsApp? A cybersecurity expert explains how that might work
Tech

Can a foreign government hack WhatsApp? A cybersecurity expert explains how that might work

Credit: Pixabay/CC0 Public Domain Earlier today, Iranian officials urged the country’s citizens...

What could have caused the Air India crash? An expert examines the proposed failure scenarios
Tech

What could have caused the Air India crash? An expert examines the proposed failure scenarios

Credit: Ahmed Muntasir from Pexels The recent crash of an Air India...

Tiny gallium nitride transistors boost chip speed and efficiency in new 3D design
Tech

Tiny gallium nitride transistors boost chip speed and efficiency in new 3D design

Researchers have developed a new fabrication process that integrates high-performance gallium nitride...