Latest Daily News Hosting, Technology News, Updates, and Trends
Latest Daily News Hosting, Technology News, Updates, and Trends
  • Home
  • News Categories
    • Cyber Security
    • Cloud Hosting
    • Data Center
    • WordPress
    • Search Engine Ranking
    • cPanel Hosting
    • CDN Hosting
    • Press Release
    • WordPress.org-Wp Engine Battle
    • World
  • Web Stories
 Popular WordPress Plugin Releases Security Update After a Critical Flaw Discovered   
Cyber Security WordPress

Popular WordPress Plugin Releases Security Update After a Critical Flaw Discovered   

by Manvinder Singh October 21, 2024 0 Comment

Jetpack, a popular WordPress site optimization plugin, addressed a decade-old vulnerability that leveraged users’ sensitive information. Thousands of WordPress websites were suspected to be under threat.   

Jetpack is a WordPress toolkit that helps create better content and provides security, performance, and growth tools. It includes various WordPress plugins, such as Jetpack Boost, Jetpack Protect, Jetpack Search, Jetpack Social, Jetpack VideoPress, Jetpack VaultPress Backup, Jetpack CRM, and Jetpack Akismet Anti-Spam.   

Jetpack’s maintainers, Automattic, announced yesterday that, after working closely with the WordPress security team, they discovered a vulnerability during an internal audit and released fixes for all vulnerable versions. The vulnerability is said to have been present in the Contact Form feature since 2016.   

Well, this is not something that’s happened for the first time. A similar issue regarding security concerns came to light in a report submitted last year and earlier this year. “Jetpack, a viral WordPress plugin that provides a variety of functions including security features for around five million websites, has received a critical security update following the discovery of a bug that has lurked unnoticed since 2012,” stated Graham Cluley, a cybercrime researcher, and blogger.    

The company has said the vulnerability has not been used in malicious attacks. But now that the issue has been made public, there is a possibility that cybercriminals may tamper with the information. Though the users are urged to update to the latest version of the plugin, the concern remains.   

“We have no evidence that this vulnerability has been exploited in the wild. However, now that the update has been released, someone may try to take advantage of it,” Jetpack engineer Jeremy Herve said. “We apologize for any extra workload this may put on your shoulders today. We will regularly audit all aspects of our codebase to ensure that your Jetpack site remains safe.”   

Jetpack released a complete list of 101 different versions of Jetpack on Tuesday. It ensures its users that their website is not vulnerable and has been automatically updated to a secure version.    

Some developers have expressed concerns that they could clash with Mullenweg and WordPress, which has been open-source and free since its creation in 2003. With the culprits still unidentified, a possible threat remains to Jetpack clients.  

Previous post
Next post

Manvinder Singh (Website)

author

Manvinder Singh, with 15 years in the web hosting industry, now shares his expertise as a news auditor, enriching web hosting users with valuable insights and guidance. His extensive experience spans server management, security protocols, and customer support, making him a trusted source in navigating the complexities of web hosting solutions. Passionate about transparency and reliability, Manvinder continues to empower businesses and individuals with practical knowledge, ensuring they make informed decisions in optimizing their online presence.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent News

  • CITRA to Sign Lease Contract with Google to Establish Three Data Centers  
  • Last Algorithm Update of 2024; Google Rolls Out December Core Update
  • WP Engine Scores Legal Win Against Automattic
  • Search Engine Update: Google Resolved Indexing Issues
  • Google Asks US Government to Break Up Microsoft’s Cloud Deal with Open AI

Recent Comments

No comments to show.

Archives

  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • October 2022
  • September 2022
  • August 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021

Categories

  • Cloud Hosting
  • cPanel Hosting
  • Cyber Security
  • Data Center
  • Press Release
  • Search Engine Ranking
  • WordPress
  • WordPress.org-Wp Engine Battle
  • World

About Hosting Daily News

Hosting Daily news primarily focuses on delivering quality and authentic content related to the hosting industry. Hosting Daily News covers a wide range of news, articles, announcements, community-based content to keep the tech enthusiasts engaged with the latest development of hosting industry which includes Cloud Hosting, Web Hosting, cybersecurity, WordPress, AI technology and various topics related to hosting. We aim to foster collaborations and knowledge sharing content among industry stakeholders.

Top Categories

  • Cloud Hosting
  • cPanel Hosting
  • Cyber Security
  • Data Center
  • Press Release
  • Search Engine Ranking
  • WordPress
  • WordPress.org-Wp Engine Battle
  • World

Latest News

  • CITRA to Sign Lease Contract with Google to Establish Three Data Centers  
  • Last Algorithm Update of 2024; Google Rolls Out December Core Update
  • WP Engine Scores Legal Win Against Automattic
  • Search Engine Update: Google Resolved Indexing Issues
  • Google Asks US Government to Break Up Microsoft’s Cloud Deal with Open AI
Copyright © 2025 HostingDailyNews. All Right Reserved.
  • Instagram
  • Facebook
  • X
  • LinkedIn