Defending Your Digital Rights

    A non-profit organization committed to protecting digital freedoms, privacy, and security for vulnerable communities worldwide.

    About Us

    We are a collective of digital rights advocates, security experts, and educators committed to empowering individuals and communities with the knowledge and tools to protect their digital freedoms.

    Our Initiatives

    How we work to protect digital rights and empower communities

    Awareness

    Raising awareness about digital rights, privacy threats, and security best practices.

    Advocacy

    Advocating for policies and regulations that protect digital rights and freedoms.

    Education

    Providing training and resources on digital security for vulnerable groups.

    Support

    Offering direct assistance to individuals and organizations facing digital threats.

    Community Building

    Creating networks of digital rights defenders to share knowledge and resources.

    Collaboration

    Working with partners globally to develop solutions to digital security challenges.

    Security Alerts

    Latest WordPress security vulnerabilities affecting plugins, themes, and core.

    MEDIUM (5.6)
    Plugin

    Stored XSS Vulnerability in Social Rocket Plugin via 'id' Parameter

    Published Date: Apr 23, 2026

    The Social Rocket – Social Sharing Plugin for WordPress is affected by a stored Cross-Site Scripting (XSS) vulnerability. This flaw allows authenticated users with Subscriber-level access or higher to inject arbitrary JavaScript into pages, potentially impacting site visitors and other users.

    MEDIUM (6.6)
    Plugin

    Gallagher Website Design Plugin Stored Cross-Site Scripting Vulnerability

    Published Date: Apr 22, 2026

    The Gallagher Website Design plugin for WordPress is affected by a Stored Cross-Site Scripting (XSS) vulnerability due to insufficient input sanitization in the 'prefix' attribute of the login_link shortcode. This flaw allows Contributor-level users and above to inject arbitrary scripts into pages, potentially executing malicious code when accessed by users.

    MEDIUM (6.2)
    Plugin

    Gutentools Plugin Stored Cross-Site Scripting Vulnerability via Post Slider Block

    Published Date: Apr 22, 2026

    The Gutentools plugin for WordPress contains a stored Cross-Site Scripting (XSS) vulnerability in the Post Slider block's block_id attribute, affecting versions up to and including 1.1.3. Authenticated users with Contributor-level access and above can exploit this flaw to inject malicious scripts into pages.

    WordPress Vulnerabilities

    Updated every hour with the latest vulnerabilities

    Latest News and Digital Rights Updates

    Stay informed about the latest digital rights issues, threats, and community resources

    Beyond Breaches: Cybersecurity as a national security imperative
    April 23, 2026

    Beyond Breaches: Cybersecurity as a national security imperative

    In an increasingly digital world, cybersecurity has become critical not only for personal or corporate data protection but as a pillar of national security. Recent cyber breaches in Nigeria have exposed vulnerabilities in digital infrastructures, calling for an urgent reevaluation of cybersecurity strategies. The incidents underscore the fragile nature of digital surfaces against increasingly sophisticated cyber threats. This urgency places cybersecurity at the forefront of national security agendas, urging nations to transition from reactive to proactive defense mechanisms. By instilling resilience in digital systems, countries can better safeguard their critical infrastructure from disruptions that could have national or even global ramifications. Emerging cyber threats such as ransomware, phishing, and state-sponsored attacks have metastasized beyond conventional data breaches, with potential impacts on financial systems, healthcare, and governance. Nations are called to develop robust cybersecurity policies, enhance cyber literacy, and foster international cooperation to combat these threats effectively. As technology evolves, so too must the strategies that protect it, necessitating a continuous adaptation to the ever-changing threat landscape. The situation in Nigeria exemplifies this need, as cybercriminals exploit existing vulnerabilities within digital ecosystems. By prioritizing cybersecurity, nations can ensure not only the security of their data but the safety and sovereignty of their infrastructures, citizens, and economies. Thus, cybersecurity is rightly earning its designation as an imperative in the realm of national security.

    WordPress DDoS Protection: How to Keep Your Site Online
    April 23, 2026

    WordPress DDoS Protection: How to Keep Your Site Online

    In the digital age, WordPress stands as a beacon of opportunity and flexibility for website owners and developers, powering over 40% of the internet. However, this popularity also makes WordPress sites prime targets for cyber threats, particularly Distributed Denial of Service (DDoS) attacks. DDoS attacks can cripple your website by overwhelming it with traffic from multiple sources, rendering it offline, and exhausting server resources. During these downtimes, businesses suffer from lost revenue, diminished search engine rankings, and eroded customer trust. Preventive measures are crucial for WordPress owners to ensure consistent uptime and maintain their digital presence. Implementing robust security practices, such as limiting login attempts, utilizing Web Application Firewalls (WAFs), choosing reliable hosting services with DDoS protection, and making regular backups, can mitigate the risk of these attacks. Furthermore, monitoring your site's traffic and bandwidth can help detect anomalies early. By investing in proactive defenses and understanding the nuances of DDoS threats, WordPress users not only safeguard their operations but also reinforce the resilience of their online platforms, ensuring they remain open and accessible to their audience at all times.

    Hackers exploit file upload bug in Breeze Cache WordPress plugin
    April 23, 2026

    Hackers exploit file upload bug in Breeze Cache WordPress plugin

    In recent cybersecurity developments, hackers have been found to actively target a critical vulnerability in the Breeze Cache plugin for WordPress sites. This exploit allows malicious actors to upload arbitrary files onto the server without any authentication, posing a significant threat to website security and integrity. The Breeze Cache plugin, widely used for optimizing and speeding up WordPress sites, has created an inadvertent backdoor that cybercriminals are exploiting to compromise countless websites worldwide. The issue arises from improper sanitization of file uploads, enabling hackers to deploy malware, execute scripts, or gain unauthorized access to sensitive information stored on affected servers. With WordPress being a ubiquitously chosen platform for blogs and websites globally, this security flaw amplifies concerns regarding third-party plugins and their implications on overall digital safety. As website owners scramble to patch their systems, it emphasizes the urgent need for regular security audits and updates. Implementing security measures such as disabling file uploads where unnecessary, employing firewalls, and monitoring server activities can mitigate potential exploitation. Awareness about plugin vulnerabilities is crucial, as they can potentially open floodgates for cyber attacks, impacting both user trust and business operations.

    Get Involved

    Join us in defending digital rights and protecting vulnerable communities.

    Donate

    Your contribution helps us provide free security resources to those who need them most.

    Volunteer

    Contribute your skills and time to support our mission and programs.

    Partner

    Collaborate with us on initiatives that advance digital rights and security.

    Let's Work Together

    Get in touch to discuss your needs or how you can support our mission

    Jedar

    Jedar for Digital Rights is a non-profit organization dedicated to protecting digital freedoms, enhancing online privacy, and promoting secure digital practices for vulnerable communities worldwide.

    Follow Us

    All Rights Reserved © 2026 Jedar for Digital Rights.

    Cookie Preferences

    We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.

    Learn More