Defending Your Digital Rights

    A non-profit organization committed to protecting digital freedoms, privacy, and security for vulnerable communities worldwide.

    About Us

    We are a collective of digital rights advocates, security experts, and educators committed to empowering individuals and communities with the knowledge and tools to protect their digital freedoms.

    Our Initiatives

    How we work to protect digital rights and empower communities

    Awareness

    Raising awareness about digital rights, privacy threats, and security best practices.

    Advocacy

    Advocating for policies and regulations that protect digital rights and freedoms.

    Education

    Providing training and resources on digital security for vulnerable groups.

    Support

    Offering direct assistance to individuals and organizations facing digital threats.

    Community Building

    Creating networks of digital rights defenders to share knowledge and resources.

    Collaboration

    Working with partners globally to develop solutions to digital security challenges.

    Security Alerts

    Latest WordPress security vulnerabilities affecting plugins, themes, and core.

    MEDIUM (6.1)
    Plugin

    Stored XSS Vulnerability in Social Rocket Plugin via 'id' Parameter

    Published Date: Apr 23, 2026

    The Social Rocket – Social Sharing Plugin for WordPress is affected by a stored Cross-Site Scripting (XSS) vulnerability. This flaw allows authenticated users with Subscriber-level access or higher to inject arbitrary JavaScript into pages, potentially impacting site visitors and other users.

    MEDIUM (5.6)
    Plugin

    Gallagher Website Design Plugin Stored Cross-Site Scripting Vulnerability

    Published Date: Apr 22, 2026

    The Gallagher Website Design plugin for WordPress is affected by a Stored Cross-Site Scripting (XSS) vulnerability due to insufficient input sanitization in the 'prefix' attribute of the login_link shortcode. This flaw allows Contributor-level users and above to inject arbitrary scripts into pages, potentially executing malicious code when accessed by users.

    MEDIUM (6.3)
    Plugin

    Gutentools Plugin Stored Cross-Site Scripting Vulnerability via Post Slider Block

    Published Date: Apr 22, 2026

    The Gutentools plugin for WordPress contains a stored Cross-Site Scripting (XSS) vulnerability in the Post Slider block's block_id attribute, affecting versions up to and including 1.1.3. Authenticated users with Contributor-level access and above can exploit this flaw to inject malicious scripts into pages.

    WordPress Vulnerabilities

    Updated every hour with the latest vulnerabilities

    Latest News and Digital Rights Updates

    Stay informed about the latest digital rights issues, threats, and community resources

    ET Awards: Sitharaman flags AI threat and global risks, says reforms on the way to support India Inc growth
    April 27, 2026

    ET Awards: Sitharaman flags AI threat and global risks, says reforms on the way to support India Inc growth

    Finance Minister Nirmala Sitharaman has raised significant concerns about the emerging threats posed by advanced artificial intelligence (AI) models. In response to these technological challenges, the Indian government is planning to institute reforms designed to streamline business compliance, ultimately supporting India Inc's growth and resilience in an increasingly digital and interconnected world. Sitharaman emphasized that robust domestic consumption, combined with proactive government measures, can help India effectively navigate global risks, including cybersecurity threats. The focus on AI highlights a growing recognition of the potential for these technologies to be misused, posing risks not just for businesses, but also for national security. The finance minister underscored the importance of developing comprehensive cybersecurity strategies to safeguard digital infrastructure and mitigate the impact of these sophisticated threats. By reinforcing both regulatory frameworks and collaborative efforts between public and private sectors, the government aims to fortify India's cybersecurity posture against AI-driven risks, ensuring a secure environment for economic growth and technological innovation.

    Why do so many cybersecurity pros want to quit? #tech
    April 27, 2026

    Why do so many cybersecurity pros want to quit? #tech

    The cybersecurity industry is experiencing a crisis in workforce stability as numerous professionals express their intention to quit due to overwhelming burnout and disparity in rewards. The increasing complexities of digital threats demand strong cybersecurity defenses, yet the professionals tasked with safeguarding critical infrastructure face unsustainable pressures and insufficient recognition. A recent report paints a grim picture of the cybersecurity landscape, revealing that the looming demand for continuous vigilance and rapid incident response exacerbates stress levels among practitioners. Particularly, the industry struggles with a severe misalignment in compensation and job support, leading to attrition as professionals seek more balanced opportunities. IT professionals often encounter a relentless environment: the perpetual race to outsmart cybercriminals, coupled with the pressure of potential breaches, imposes a high-impact workload. Consequently, companies risk losing seasoned experts due to inadequate rewards and emotional fatigue. For many, the time-intensive nature of the job coupled with underappreciation leaves little room for growth and job satisfaction, prompting calls for structural reforms that prioritize mental health and fair compensation. Fostering an environment where cybersecurity experts feel valued could mitigate this trend and is essential for maintaining robust defenses in our increasingly digitized world.

    Nearly half of cybersecurity pros want to quit - here's why
    April 26, 2026

    Nearly half of cybersecurity pros want to quit - here's why

    The cybersecurity industry is facing a critical turning point as nearly half of its professionals consider leaving their jobs. This unsettling trend stems from a variety of factors, including overwhelming workloads, constant pressure to stay ahead of sophisticated cyber threats, and a work-life balance that is far from ideal. Security specialists are often seen at the forefront of defending organizations against relentless cyberattacks, which have only increased in frequency and complexity. The pressure to maintain constant vigilance—combating everything from phishing scams to ransomware—is taking a toll on their personal and professional lives. Moreover, the battle against cybercrime often feels like a never-ending race. The velocity of technological advancements and the scarcity of specialized resources exacerbate the stress levels of those charged with safeguarding digital assets. Many workers in the sector report lacking adequate support from their organizations, which are frequently more focused on cutting costs and meeting compliance rather than investing in robust security measures. However, amidst the discontent, there is a glimmer of hope. Industry experts suggest that by fostering a more supportive environment and investing in advanced security tools and automation, organizations can alleviate some of the burdens cybersecurity professionals face. Additionally, enhanced training programs and clearer career progression paths could improve retention rates and job satisfaction, keeping these vital guardians in their posts. This situation serves as a wake-up call for all digital stakeholders, including businesses relying heavily on web infrastructures like WordPress, to take cybersecurity seriously by not just relying on their experts, but actively supporting and growing their in-house capabilities.

    Get Involved

    Join us in defending digital rights and protecting vulnerable communities.

    Donate

    Your contribution helps us provide free security resources to those who need them most.

    Volunteer

    Contribute your skills and time to support our mission and programs.

    Partner

    Collaborate with us on initiatives that advance digital rights and security.

    Let's Work Together

    Get in touch to discuss your needs or how you can support our mission

    Jedar

    Jedar for Digital Rights is a non-profit organization dedicated to protecting digital freedoms, enhancing online privacy, and promoting secure digital practices for vulnerable communities worldwide.

    Follow Us

    All Rights Reserved © 2026 Jedar for Digital Rights.

    Cookie Preferences

    We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.

    Learn More