WordPress, explained for site owners.
WPWithin explains what changed in WordPress, who needs to care, and what to do next. Read the weekly Weekend Within roundup or explore practical articles on security, AI, updates, and more.
Latest WordPress news roundup
Read the latest roundupIssue 14: When a PNG Isn't a PNG
WordPress 7.0.4 patches an Imagick RCE flaw, its third security release in weeks. Two plugin backdoors hit official update channels this week too.
Latest WordPress articles
Browse all WordPress articlesCritical Flaw in Elementor Pro Lets Attackers Take Over Your Site Without Logging In
An unauthenticated flaw in Elementor Pro lets attackers upload malicious files and take over your site. Update to version 4.2.2 now.
WordPress 7.1 'Mary Lou' Is Here With Responsive Styling and a Rebuilt Image Editor
WordPress 7.1 is here with responsive design controls, a persistent admin bar, and a rebuilt image editor. Update now to get the new tools.
Gutenberg 23.8 Lets You Link Straight to One Exact Post Revision
Gutenberg 23.8 lets editors link straight to one exact revision, emails you when someone mentions you in a note, and makes List View 40x faster.
WordPress's AI Plugin Can Now Translate Posts and Suggest Slugs
WordPress's AI plugin 1.3.0 adds in-editor content translation and slug suggestions. A key naming change also affects custom Abilities setups.
Critical Flaw in Forminator Forms Lets Attackers Take Over Your Site Without Logging In
A critical flaw in Forminator Forms lets attackers upload malicious files and take over your site without logging in. Update to 1.56.2 now.
Critical Flaw in User Profile Builder Lets Attackers Log In as Your Admin
A critical flaw in User Profile Builder can let attackers log in as your site admin. Update to version 3.16.5 now if Automatic Log In is enabled.