The cart is empty
20
Jul

Critical wp2shell Vulnerability in WordPress: Update Your Website Immediately

WordPress has released an emergency security update that fixes a critical vulnerability chain known as wp2shell. The security issue allows a remote attacker to compromise certain Wordpress installations without knowing a password, without having a user account, and even without any vulnerable plugin or theme being installed. The issue primarily affects websites running WordPress versions 6.9.0 through…
14
Jul

Critical Vulnerability in Helix Ultimate 2.2.6 and Older Versions: Malicious JavaScript Can Take Over Joomla Administration

A serious security vulnerability has been discovered in the popular Helix Ultimate framework for Joomla. The flaw allows an unauthenticated attacker to write data into menu item parameters and inject malicious JavaScript into a website. The vulnerability affects Helix Ultimate 2.2.6 and all older versions. The security fix was released in version 2.2.7. However, we recommend always…
09
Jul

Critical vulnerability CVE-2026-54807 threatens WordPress e-commerce sites using WooCommerce

A critical security vulnerability identified as CVE-2026-54807 has been discovered in the Registration Form for WooCommerce plugin. The vulnerability may allow an unauthenticated attacker to obtain administrator privileges and subsequently take control of the entire Wordpress website. The vulnerability received a CVSS score of 9.8 out of 10, placing it in the highest category of critical security…
22
Jun

After the critical JCE vulnerability, another serious risk for Joomla websites has appeared: SP Page Builder

In recent days, Joomla website administrators have been dealing with another extremely serious security issue. Shortly after the critical vulnerability in the JCE editor, which allowed unauthorized uploading of an editor profile and, in the worst case, the upload of malicious files, a similarly dangerous vulnerability has appeared in the SP Page Builder extension. The vulnerability is…
17
Jun

MyDreams.cz protected nearly 3,000 Joomla websites from a massive wave of attacks targeting the JCE Editor

Website security is not a one-time task, but an ongoing process. The latest critical vulnerability in the JCE Editor for Joomla has shown how quickly cyberattacks can spread across the internet and how important an immediate response is. As soon as the vulnerability was disclosed, MyDreams.cz launched an extraordinary security operation focused on all Joomla websites we…