WPDigest.io

Digest108

Digest 108: ⚠️ 82,000+ WordPress Sites in Danger – Popular Theme Exploit Discovered

WPDigest Logo

Catch up on the latest product releases, security alerts, community updates, and milestones shaping the WordPress ecosystem this week.


ZipWP – Struggling to build a website? ZipWP uses powerful AI to create a complete WordPress site for you – content, design, and all. No coding, no confusion. Just pick a style and you’re live in minutes.

SERP Forge – Your site deserves to be seen. SERP Forge specializes in SEO and content marketing for WordPress & SaaS businesses. Their proven strategies help you rank higher, get organic traffic, and grow.


Brought to you with support from these partners

💡 WordPress Spotlight

Critical Alert: Remote Code Execution Vulnerabilities in TheGem Theme

Security researchers have uncovered two significant vulnerabilities in TheGem, a popular WordPress theme with over 82,000 installations. These flaws—CVE-2025-4317 and CVE-2025-4339—can be exploited together to allow attackers to upload and execute malicious PHP files, potentially compromising entire websites. The theme’s developers have released a patched version (5.10.3.1) to address these issues. It’s imperative for site owners using TheGem to update immediately and review user permissions. Read the full report

WordPress Adopts Annual Major Release Schedule

Starting in 2025, WordPress will shift to a single major core release per year. This change aims to enhance stability, reduce technical debt, and allow contributors more time to focus on performance improvements and long-standing bugs. Minor and security updates will continue as needed, ensuring ongoing site maintenance and security. Learn more about the new release cadence

A2 Hosting Rebrands as Hosting.com

A2 Hosting has announced its rebranding to Hosting.com, marking a strategic move to better reflect its global reach and commitment to providing top-tier hosting services. While the name has changed, the company’s dedication to speed, reliability, and customer support remains steadfast. Users can expect enhanced global recognition and continued innovation under the new brand. Read the full announcement

SpeedyCache Achieves 400,000 Active Installs

SpeedyCache, a WordPress caching plugin, has reached a milestone of 400,000 active installations. The plugin’s rapid growth is attributed to its user-friendly interface and effective performance enhancements. Recent updates include the addition of a Delay JS exclusion list and ongoing development of Memcached support, demonstrating the team’s commitment to continuous improvement. Celebrate the milestone with SpeedyCache

WordCamp US 2025: Call for Organizers

WordCamp US 2025 is seeking passionate individuals to join its organizing team. No prior experience or specific location is required—just a commitment to WordPress and community collaboration. Organizers will manage various tasks, participate in planning sessions, and attend the event in Portland, Oregon, from August 26–29, 2025. If you’re interested in contributing to this premier WordPress event, consider applying. Apply to be an organizer

Masteriyo Joins Themeisle: A New Era for WordPress LMS

Masteriyo, a user-friendly Learning Management System (LMS) plugin, has partnered with Themeisle to enhance online course creation in WordPress. This collaboration aims to simplify the process of building and selling courses, offering features like drag-and-drop course builders and seamless integration with WordPress themes. Users can look forward to improved functionality and support. Read the full announcement

Crocoblock Celebrates 7 Years of Innovation and Growth

Crocoblock marks its 7th anniversary, celebrating a journey from a small team to a global community. Over the years, they’ve achieved milestones like powering over 100,000 websites, releasing 1,500+ plugin updates, and resolving 127,000 support tickets. The team emphasizes their commitment to continuous learning and user support, fostering a vibrant community around their products. Read the full story

GoDaddy Launches Agency Program to Connect Freelancers with Clients

GoDaddy introduces a new Agency Program aimed at U.S.-based web developers, freelancers, and agencies. This initiative connects professionals with high-intent leads from small to mid-sized businesses, offering tools, support, and commissions to help grow their client base and streamline operations. The program is designed to foster collaboration and business growth within the web development community. Learn more about the program

Ahrefs Introduces the B.R.E.W. Framework for Marketing Decisions

Ahrefs unveils the B.R.E.W. framework to streamline marketing decision-making. Standing for Business potential, Reach, Effort, and Who, this model helps teams evaluate and prioritize marketing ideas effectively. By assessing each factor, marketers can focus on strategies that align with their goals and resources. Explore the B.R.E.W. framework

SureForms Reaches 200,000 Users in Just 6 Months

SureForms has achieved a significant milestone, amassing over 200,000 active users within six months of its launch. This rapid growth underscores the platform’s appeal as an AI-powered form builder that simplifies creating interactive and customizable forms for WordPress users. To celebrate, SureForms is offering up to 34% off on premium plans for a limited time. Recent feature enhancements include calculators for instant quotes, digital signature support, and expanded conditional logic options, reflecting the team’s commitment to continuous improvement. Read the full announcement

WooCommerce Alert: Phishing Campaign Targeting Store Owners

WooCommerce has issued a warning about a phishing campaign where attackers send fake emails claiming critical security vulnerabilities and urging store owners to install malicious “patches.” These emails often come from suspicious domains and mimic official WooCommerce communications. Store owners are advised to verify any security messages through official channels and avoid clicking on suspicious links. Read the full advisory

🏷️ Exclusive Deals Digest

Unlock incredible lifetime deals on the best WordPress tools and services, saving you money while enhancing your website. Don’t miss out on exclusive offers that can transform your WordPress experience.

✨ Fresh Features Rollout

  1. WPConsent 1.0.5: Enhanced Privacy Controls with Content Blocking
    WPConsent has released version 1.0.5, introducing a new Content Blocking feature that prevents third-party services like YouTube, Google Maps, and reCAPTCHA from loading until user consent is given. Additionally, the preferences panel has been redesigned for improved user experience, allowing visitors to manage their cookie settings more intuitively. Learn more about WPConsent 1.0.5
  2. Easy Digital Downloads 3.3.8: Customize Checkout Address Fields Without Code
    The latest update to Easy Digital Downloads (v3.3.8) allows store owners to fully customize checkout address fields directly within the plugin settings. This enhancement enables toggling field visibility, reordering fields, and adding a phone number field—all without the need for additional plugins or coding. The feature aims to streamline the checkout process and reduce cart abandonment. Explore the new checkout customization options
  3. ThemeSwitcher Pro: Run Multiple Themes on a Single WordPress Site
    WebDevStudios has launched ThemeSwitcher Pro, a plugin that allows users to assign different themes to various parts of their WordPress site based on custom conditions. This tool is ideal for gradually transitioning to new designs or using specialized themes for specific content types. To celebrate the launch, a 50% discount is available for the first 50 customers using the code SWITCHITUP. Discover ThemeSwitcher Pro
  4. GeneratePress Releases Four New Starter Sites for Charities
    GeneratePress has introduced four new starter site templates—Charity, Youth, Rescue, and Conserve—designed specifically for nonprofit organizations. These templates are optimized for performance, accessibility, and mobile responsiveness, making it easier for charities to establish a professional online presence and connect with supporters. Explore the new charity starter sites

🆕 Fresh Releases

  • Charitable Pro – A Powerful Plugin for Fundraising Websites
    Charitable Pro is a feature-packed WordPress plugin for managing donations and fundraising campaigns. It includes a new Donor Management System, customizable donor dashboards, and easy receipt generation. With Stripe integration and built-in features like video embedding and geolocation, it’s perfect for nonprofits looking to enhance donor engagement and streamline donation processes. Check Charitable
  • MemberHub – Flexible WordPress Membership Plugin
    Transform your WordPress site into a powerful membership platform with MemberHub. Create custom membership plans, restrict content, and manage subscriptions effortlessly. Integrated with WooCommerce, it offers member discounts, exclusive pricing, free shipping, and more. Enjoy easy setup, no coding required, and enhanced performance for a seamless membership experience. Check MemberHub
  • B2B for SureCart Plugin
    Enhance your SureCart store with advanced B2B features, including wholesale pricing, catalog mode, inquiry forms, messaging, and a custom quote builder. Perfect for businesses offering tailored pricing or custom orders, this plugin seamlessly integrates with SureCart to streamline customer communication and provide personalized checkout experiences. Check B2B for SureCart
  • RepublishAI Plugin
    RepublishAI connects your WordPress sites to the RepublishAI platform, automating SEO content creation and updates. With AI-powered agents, it writes, refreshes, and optimizes content while generating images, boosting SEO, and saving time. Perfect for managing multiple sites and scaling content creation effortlessly. Check RepublishAI
  • Frontend Product Editor Manager for WooCommerce
    With the Frontend Product Editor Manager for WooCommerce, store admins and managers can edit product details directly from the frontend, eliminating the need for backend dashboard access. Make real-time changes to product names, descriptions, pricing, inventory, categories, shipping info, and more—all without page reloads.
    Check Frontend Product Editor
  • Shipping Manager: All-in-One Shipping Solution for WooCommerce
    Shipping Manager simplifies WooCommerce shipping, offering full control over shipping costs, box sizes, and delivery options. Tailor shipping fees based on weight, distance, or box size without coding. This all-in-one solution supports eCommerce businesses of all sizes, improving logistics, reducing costs, and enhancing customer experience. Check Shipping Manager

🗓️ Mark Your Calendar 

If you’re looking for opportunities to network and learn, check out these upcoming WordPress events and meetups:

That’s a wrap for this week’s WPDigest! Stay tuned for more exciting WordPress updates next week.

📩 Enjoyed this digest? Share it with your network!

Leave a Comment

Your email address will not be published. Required fields are marked *