Skip to main content
Patchstack

Patchstack

Search complete. 7 mentions across 7 episodes found for "Patchstack".

Sep 7, 2026

Matt MedeirosHOST
47:42
These brands are supporting WordPress media and helping us invest in your future as a WordPress professional.
Matt MedeirosHOST
47:48
Our Foundation Plus sponsors like Hostinger, BigScoots, StellarWP, PersonalizeWP, WeGlock, and PatchStack help us keep the lights on.
Matt MedeirosHOST
47:56
Thanks to all of our members in the WP Minute Slack channel, which you can join too.
Matt MedeirosHOST
48:00
Head on over to thewpminute.com slash support to get access.
Aaron D. CampbellGUEST
32:44
And that's now ours for major vulnerabilities.
Aaron D. CampbellGUEST
32:47
As a matter of fact, we did a Monarchs in conjunction with Patchstack did like a year in review thing looking back at last year.
Aaron D. CampbellGUEST
32:55
And we saw that for the more major vulnerabilities, It was about five hours.
Aaron D. CampbellGUEST
33:01
That's not enough time for, you know, what happens if it happens in the middle of the night for a host who's constantly monitoring that, immediately patching it.
Aaron D. CampbellGUEST
32:44
And that's now ours for major vulnerabilities.
Aaron D. CampbellGUEST
32:47
As a matter of fact, we did a Monarchs in conjunction with Patchstack did like a year in review thing looking back at last year.
Aaron D. CampbellGUEST
32:55
And we saw that for the more major vulnerabilities, It was about five hours.
Aaron D. CampbellGUEST
33:01
That's not enough time for, you know, what happens if it happens in the middle of the night for a host who's constantly monitoring that, immediately patching it.
David ShipleyHOST
7:05
Five critical flaws in WordPress plugins and themes could hand attackers an entire site.
David ShipleyHOST
7:11
WordPress and Patchstack disclosed the vulnerabilities which hit WPMU Dev Dashboard, the Avada theme, TranslatePress, Pods, and Give WP.
David ShipleyHOST
7:23
Four score 9.8 out of 10.
David ShipleyHOST
7:26
One is a perfect 10.
speaker_0HOST
0:10
A critical flaw in the popular GiveWP WordPress plugin allows unauthenticated attackers to execute commands on web servers.
speaker_0HOST
0:17
PatchStack disclosed the issue on August 28th, after a researcher reported it on July 28th, and the plugin vendor released version 4.16.7.2 to fix the PHP object injection chain.
speaker_0HOST
0:30
The vulnerability, which carries a maximum severity score, impacts all versions through 4.16.7.1 and requires immediate patching to prevent server takeover.
speaker_0HOST
0:40
Extortion group FulcrumSec claims responsibility for stealing 86GB of data from Manchester Airport's group after finding exposed API credentials in client-side JavaScript.
speaker_1HOST
8:23
Right.
speaker_0HOST
8:24
And this is disclosed by Patchstack, who credited the DigitalOcean security team for the discovery.
speaker_0HOST
8:30
And the root cause here is described as a, quote, loose Boolean check, unquote, on the return values of a function called Open SAML Verify.
speaker_1HOST
8:38
Yeah, this is where we get into the weeds of how programming languages actually interpret logic.
Eric KarakovacHOST
8:15
These brands are supporting WordPress media and helping us invest in your future as a WordPress professional.
Eric KarakovacHOST
8:21
Our Foundation Plus sponsors like Hostinger, BigScoots, StellarWP, PersonalizedWP, Weglot, and Patchstack help us keep the lights on.
Eric KarakovacHOST
8:29
Thanks to all of our members in the WP Minute Slack channel, which you can join too.
Eric KarakovacHOST
8:33
Head on over to thewpminute.com slash support to get access.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.