Contact Form 7 6.2 Requires PHP 8.3 and WordPress 7.1: What It Means for Your Site
Contact Form 7 6.2 raised its minimums from PHP 7.4 to 8.3 and WordPress 6.7 to 7.1. What happens to sites below the bar, and where it can still...
Read More
Contact Form 7 6.2 raised its minimums from PHP 7.4 to 8.3 and WordPress 6.7 to 7.1. What happens to sites below the bar, and where it can still...
Read MoreWordPress 7.1.3, released 6 October 2026, fixes seven security issues in core, including two cross-site scripting flaws and a SQL injection in export.
Read More
WordPress 7.1.2, released 22 September 2026, fixes a critical unauthenticated file inclusion flaw. It is the fifth core security release since 17 July.
Read More
Patchstack recorded 11,334 new WordPress vulnerabilities in 2025, up 42%. Our own analysis of the CVE record shows 2026 running level, not higher.
Read More
WordPress 7.1 changed how hook callbacks are identified. On sites running WP Rocket and Elementor Pro under PHP 8, that is a fatal error โ often hidden behind a...
Read More
Elementor Pro 4.2.2, released 19 August 2026, fixes a CVSS 9.0 flaw letting anyone upload PHP files through a Form upload field. What it means for your site.
Read More
WordPress 7.0.4, released 12 August 2026, fixes a remote code execution flaw โ the third core security release in four weeks. What it means for your site.
Read MoreWordPress 7.0.2 was released on 17 July 2026, fixing an unauthenticated RCE and a SQL injection in core. What it affects and what to do.
Read MoreUpdated 15 May 2026 ยท Written by Andrew The short version: if your site is hosted with WP Care, you don’t need to do anything โ we’ve already protected...
Read MoreWordPress 7.0 launched 20 May 2026. Here's what shipped, what didn't, the new PHP requirement, and how we approach updates across client sites.
Read More