10,000 WordPress Sites Affected by Arbitrary File Read Vulnerability in Eventin WordPress Plugin

TLDR: Wordfence's 2024 security report highlights an Arbitrary File Read vulnerability in the Eventin WordPress plugin (versions ≤4.0.26) allowing unauthenticated access to sensitive files. Discovered by researcher mikemyers, a patch (version 4.0.27) was released on April 30, 2025, after reports were validated. Users are urged to update immediately; Wordfence firewall protects against this vulnerability.

https://www.wordfence.com/blog/2025/05/10000-wordpress-sites-affected-by-arbitrary-file-read-vulnerability-in-eventin-wordpress-plugin/

ACF Chat Fridays: ACF Blocks Inline Editing Demo

ACF Chat Fridays is a monthly meetup for the Advanced Custom Fields community. The May 2, 2025 session featured a demo of inline editing for ACF Blocks, discussed ACF PRO 6.4's release, and encouraged community feedback. Hosted by Iain Poulson and others, it highlighted streamlined workflows and introduced new features while maintaining backward compatibility. Inline editing will be optional and not support certain complex fields initially. Upcoming sessions are scheduled monthly, with the next on June 6, 2025.

https://www.advancedcustomfields.com/blog/acf-chat-fridays-acf-blocks-inline-editing-demo/

How to Add an Author Bio to Your WordPress Posts

Author bios enhance credibility in WordPress posts, aiding personal branding and SEO. Various methods are available to add bios, including editing user profiles, utilizing theme options, plugins, or manual coding. Key steps involve editing user profiles for bio info, adding profile pictures via Gravatar, and checking theme support for bio sections. Several recommended plugins (e.g., Simple Author Box, WP Post Author) allow for customizable bios, while coding offers full control. Schema markup can improve SEO, and troubleshooting tips address common issues like missing bios or images. Tools like Jetpack AI Assistant can streamline content creation for authors.

https://jetpack.com/resources/add-author-bio-in-wordpress/

WordPress Campus Connect Expands

WordPress Campus Connect, launched in October 2024, is now an official event series after a successful pilot with 400 Indian students. It merges hands-on training with community activities like meetups and scholarships, inspiring interest from other organizations to replicate the model. Future events will target more students with diverse curriculum levels. Recognized as an event series, plans include larger student events and mentorship connections. Key next steps for volunteers involve creating resources, onboarding support, and establishing frameworks for student-led groups. The initiative exemplifies community engagement in WordPress education. Interested participants can join the #campusconnect Slack channel.

https://wordpress.org/news/2025/05/wordpress-campus-connect-expands/

Scroll to Top