Short updates from the WordPress world - releases, changes, and important announcements.
Looks in titles, excerpts, and topics.
83 stories · Clear filters
WordPress 7.1 adds major accessibility fixes, but Media Library infinite scroll should be tested or disabled on sensitive sites.
WordPress 7.0.4 is a security release fixing an Author+ RCE issue on sites using Imagick and Ghostscript. Update and verify now.
WooCommerce 11.0.1 is a security update with fixes for checkout, Store API, guest sessions, permissions, and WordPress 7.1 compatibility.
Wordfence reports a BdThemes supply chain compromise using poisoned JSON in wp-admin. Check affected plugins, admin users, webshells, and…
WordPress 7.0.3 is a security release with fixes for XSS, SSRF, privilege escalation, and information disclosure issues.
WooCommerce released a Stripe for WooCommerce security update. Stores on versions 9.7.0-10.8.4 should update and test checkout.
WooCommerce faced a short outage after sending a newsletter to 800,000 recipients, highlighting risks of large email sends for site…
Week 31/2026 highlights: possible security patch delays, a WooCommerce 11.0 action timing change, and WordPress 7.1 Beta 4 testing guidance.
New guidelines emphasize the importance of early detection of security issues in WooCommerce stores. Regular monitoring can significantly…
Patchstack says WordPress.org’s update delay helps with supply-chain risk, but may slow urgent plugin security fixes.
A critical vulnerability in WordPress allows unauthenticated attackers to create admin accounts. Site owners must update immediately to…
BigCommerce has introduced new fees and reduced GMV thresholds, prompting store owners to consider migrating to WooCommerce for better cost…
A critical vulnerability in the Advanced Responsive Video Embedder plugin allows unauthenticated access to WordPress sites. Immediate…
Elementor introduces Angie, an AI that generates full web pages from user prompts, streamlining the design process for website creators.
Learn how to synchronize your inventory effectively for peak sales seasons to prevent overselling and customer dissatisfaction.
Wordfence’s AI project PRISM has autonomously discovered 202 vulnerabilities in just 30 days, enhancing WordPress security amid rising…
WordPress 7.1 enables client-side media processing, allowing image handling in browsers, which improves performance and reduces server load.
WordPress has released critical security updates addressing vulnerabilities that allow unauthenticated remote code execution. Update now to…
WordPress 7.0.2 is a critical security update that site owners must implement immediately, while 7.1 beta 3 is set to release soon.
The AI 1.2.0 update introduces features like Suggest Reply for comment moderation and bulk Content Summary generation, enhancing content…
Patchstack saw WordPress core RCE exploitation attempts 90 minutes after the patch. Update now and check for compromise signs.
WordPress has released critical updates to address two serious vulnerabilities. Site owners must ensure their sites are updated immediately.
WordPress 7.0.2 addresses critical security vulnerabilities. Update your sites immediately to avoid potential threats.
WooCommerce 11.0 introduces automatic stock restoration for orders marked as ‘failed’, impacting inventory management for online stores.
Redirect loops can frustrate users and harm SEO. Learn how to identify and fix them on your WordPress site.
Milan Petrović discusses the dangers of outdated PHP versions in WordPress and highlights the importance of upgrading for security and…
A critical payment validation issue in Stripe for WooCommerce has been patched. Store owners should update immediately to avoid transaction…
The new Reddit for WooCommerce extension allows easy ad campaign management, helping store owners connect with customers during purchase…
WooCommerce 11.0 beta is available for testing, with performance improvements and new features set for release on July 28, 2026.
grüum opted to remain on WooCommerce after evaluating Shopify and Magento, citing flexibility and cost efficiency as key factors.
AI 1.1.0 introduces Type-ahead Text and Key Encryption, enhancing content management and user interaction in WordPress.
WooCommerce is launching unified extension settings in version 10.9, enhancing interface consistency and simplifying management for store…
Significant changes in UK shipping regulations require e-commerce store owners to adapt their strategies to avoid increased costs and…
The Snapchat for WooCommerce extension automates ad management and product syncing, helping store owners reach customers effectively.
WooCommerce’s new auto-apply coupon feature simplifies the discount process, enhancing customer experience and boosting sales during peak…
Learn how to make your online store more visible to AI shopping agents with structured content and optimization strategies.
A critical vulnerability in Everest Forms Pro is being actively exploited. Update to version 1.9.13 immediately to secure your site.
277 vulnerabilities were disclosed in WordPress plugins and themes last week. Site owners must check for impacts and secure their sites.
A critical vulnerability in UpdraftPlus allows unauthenticated access to execute commands as an admin. Immediate updates are necessary to…
Last week, 160 vulnerabilities were disclosed in WordPress plugins and themes. Site owners need to act quickly to secure their sites.
A supply chain attack on ShapedPlugin has injected backdoor code into Pro versions, impacting over 400,000 users. Immediate action is…
A critical vulnerability in the Gravity SMTP plugin allows attackers to access sensitive data. Immediate updates are necessary to protect…
PayPal Standard is being retired, requiring WooCommerce merchants to transition to PayPal Payments for continued service and improved…
The Wordfence Q1 2026 Threat Intelligence Report reveals a significant rise in vulnerabilities, urging site owners to enhance their…
146 vulnerabilities in 127 plugins and 1 theme were disclosed last week. 139 have been patched, but 7 remain unpatched. Site owners must…
WooCommerce 10.9 introduces significant updates that enhance order management and user experience during checkout.
WooCommerce 10.9.0 introduces performance enhancements that can significantly improve checkout processes and user experience.
Implementing ‘buy now, pay later’ can increase sales and profit margins for online stores. Here’s how to get started.
Last week, 102 vulnerabilities were disclosed in WordPress plugins and themes. Site owners must act quickly to secure their websites…
A critical vulnerability in the Avada Builder plugin allows unauthorized file deletion. Users must update to version 3.15.4 to secure their…
Tampered CDN scripts for OptinMonster, TrustPulse and PushEngage could create rogue WordPress admin accounts. Here is what to check.
WooCommerce 10.9 beta is now available for testing, featuring performance improvements and transactional email logging. Final release on…
WordPress implements a 24-hour cooldown for plugin and theme updates to enhance security, impacting how site owners manage updates.
WooCommerce 10.9 adds transactional email logging, helping store owners troubleshoot email issues effectively and improve customer…
Austin Ginder discusses how AI reveals hidden threats in WordPress plugin updates, highlighting the risks of supply chain attacks.
WooCommerce 10.9 adds a Color / Image attribute, allowing visual swatches for better product representation, potentially boosting sales.
WordPress 7.0 has been successfully released, with 46% of installations updated, but legal challenges threaten the platform’s stability.
WooCommerce 10.8 introduces performance improvements and compatibility updates, essential for optimal store operation and upcoming…
Jetpack Search 7.0 adds product-aware filters to WooCommerce stores, improving customer sorting options and potentially boosting sales.
AI 1.0.0 introduces significant updates that improve content management and user interactions on WordPress sites, crucial for site and…
The launch of WordPress 7.0 and the new AI plugin 1.0.0 offer significant updates that site owners should consider for enhancing their…
WordPress 7.0 brings significant innovations, including AI integration and a modern interface, transforming site management for owners and…
WooCommerce store owners need to grasp sales tax regulations to avoid legal issues and protect their business.
New EU Directive 2023/2673 mandates a withdrawal link for e-commerce sites, impacting return policies and legal compliance.
WooCommerce now allows product tagging in YouTube videos, Shorts, and live streams, enhancing sales potential for store owners.
Patchstack says a trojanized WowShipping Pro 1.0.6 copy installed hidden malware. Updating helps, but cleanup may still be needed.
WooCommerce 10.7 introduces a 51% reduction in queries, a new fulfillment API, and cache fixes, enhancing performance for online stores.
Anne Bovelett discusses how web accessibility can significantly enhance traffic and revenue for website owners.
WordPress 6.9.2 is out now, addressing critical security vulnerabilities. Site owners must update immediately to protect their sites.
WordPress 7.0 is approaching with significant updates. Site owners must stay informed about new features and crucial security fixes.
The Plugin Check plugin now automatically generates security reports after each update, enhancing plugin safety for developers and site…
The Agentic Commerce Protocol allows direct purchases through AI interactions, reshaping e-commerce strategies for store owners and…
Agencies are cutting staff due to AI efficiencies. Website owners must adapt to these changes and focus on solving client problems.
The WordPress Security Team will stop updates for versions 4.1 – 4.6 in July 2025, raising security risks for users of these versions.
WordPress 6.8 Beta 1 is out with over 370 enhancements and 520 bug fixes. Security researchers are invited to report vulnerabilities for…
WordPress has launched Secure Custom Fields, a fork of ACF, to fix security issues and eliminate commercial upsells. Site owners should…
WP Engine’s ban from WordPress.org raises concerns for site owners about security and support issues. Here’s what you need to know.
WordPress 6.5.5 includes critical security fixes. Site owners should update immediately to protect against vulnerabilities.
WordPress 6.5.2 includes critical security fixes and bug updates. Site owners should update immediately to protect their websites.
WordPress 6.5 Beta 1 is set to launch on February 13, 2024, introducing new features and a call for security testing with double bounties.
WordPress 6.4.3 includes critical security fixes and bug resolutions. Site owners should update immediately to protect against…