Blog
Latest news — check out what we’ve been building.
Latest news — check out what we’ve been building.

CVE-2026-48888 (CVSS 7.5) can exhaust server resources on any WooCommerce store running a version older than 11.1.0. The…

WordPress scores 35-55 on PageSpeed out of the box, Next.js hits 95-100 — but that gap doesn’t tell…

WordPress 7.1 moves image processing into your browser, adds Tabs and Playlist blocks, and styles hover states with…

CVE-2026-19632 can leak an admin’s password-reset link through TranslatePress’s own translation table. Update to 3.3.4+ and check your…

Adding multiple vendors to WooCommerce means product ownership, order-scoped permissions, and payouts — here’s what to check before…

CVE-2026-0740 lets attackers upload a webshell to Ninja Forms File Uploads sites with no login. A March patch…

WooCommerce 11.1 (Sept 1, 2026) ships native variation galleries, faster REST APIs, and an EU refund endpoint. Here’s…

WooCommerce Subscriptions has a critical CVSS 9.8 RCE vulnerability (CVE-2026-18391) affecting HPOS users. Update to 7.9.1, 8.8.2, or…

How AutoScout24 inventory sync works for WordPress dealer sites, the difference between import-only and full two-way sync, and…