Best WordPress Hosting
 

WordPress Vulnerability Report – May 24, 2023

via ithemes.com => original post link

On May 20, 2023, WordPress 6.2.2 was released to address a regression — a bug introduced in 6.2.1 that broke shortcode functionality — as well as a security issue. Because 6.2.2 is a security release, you should update your sites immediately. All versions since WordPress 5.9 have also been updated. The next major version of WordPress core slated for an August release will be 6.3.

WordPress core has been updated to secure 6 vulnerabilities disclosed with its 6.2.1-6.2.2 releases. In the plugin and theme ecosystem, 97 total vulnerabilities emerged in public disclosure. They may affect over 5 million WordPress sites. Out of the total number, there are 64 plugin vulnerabilities that have security patches available.

Additionally, there are 22 plugin vulnerabilities and 11 theme vulnerabilities with no patch available yet. If you are using any unpatched plugins or themes, check their vendors’ intentions and progress on a security release. If no patch is forthcoming or the vulnerable software has been closed and dropped from the official WordPress theme and plugin repositories, you should consider deactivation and removal in favor of alternative solutions.