Fwd: Latest updates from mySites.guru

0 views
Skip to first unread message

Dorothy Firsching

unread,
Apr 16, 2026, 3:55:24 PMApr 16
to novaj...@googlegroups.com
Some interesting things here!

---------- Forwarded message ---------
From: Phil Taylor <ph...@phil-taylor.com>
Date: Thu, Apr 16, 2026 at 6:20 AM
Subject: Latest updates from mySites.guru



Service improvements, Joomla 6.1 guides, and three WordPress supply chain attacks you need to know about
mySites.guru
 

Latest updates from mySites.guru

Busy April. Joomla 6.1 shipped with some things you might actually want to use, WordPress had three supply chain attacks in a fortnight (Essential Plugin, Smart Slider 3 Pro, Ninja Forms File Uploads), and I've shipped a fair few service updates in between.

On the service: a one-click tool to turn on Joomla module versioning across your portfolio, another to enable the new POW captcha in Joomla 6.1 site-wide, redesigned Extensions, Remote Install, and Update Manager pages, a sidebar "Needs Attention" filter for sites running vulnerable plugins, and per-user opt-outs so you can silence the notification types you don't need. A handful of papercuts are gone too: snapshot scheduling for accounts created after 2020, auto-login against password-protected wp-admin, audits on slow webhosts, and that false positive on JoomShaper's SP Smart Slider.

I ship most days. Be sure to bookmark the changelog. Every new tool, fix, and security notice lands there first.

See the full April changelog at manage.mysites.guru/en/changelog

 

What I've shipped this month

The highlights, in no particular order:

New tool: Enable Joomla module versioning across every site in one click
New tool: Enable POW captcha on Joomla 6.1 sites site-wide
New: "Needs Attention" sidebar filter for sites with vulnerable plugins
New: Toggle the Joomla backward compatibility plugin remotely from audits
Improved: Extensions, Remote Install, and Update Manager pages redesigned
Improved: Per-user opt-out for "site hacked" and Global Config alerts
Improved: Extensions database shrunk by ~1.8 GB for faster queries
Security: Coverage for Essential Plugin, Smart Slider 3 Pro, and Ninja Forms File Uploads
Fixed: Snapshot scheduling for accounts created after 2020
Fixed: Auto-login to password-protected wp-admin
Fixed: Audit reliability on slower webhosts
See the full changelog

Updated every day, sometimes several times a day

 

Joomla 6.1 is here

New

Joomla 6.1.0 Released

Joomla 6.1.0 Released – What's New

New

Enable POW Captcha in Joomla 6.1

How to Enable POW Captcha in Joomla 6.1

New

Joomla 6.1 Module Versioning

How to Turn On Module Versioning in Joomla 6.1

 

Three WordPress supply chain attacks in a fortnight

Two plugins got poisoned at source and one had a classic AJAX hole. Don't skip any of them.

Security

Essential Plugin WordPress Backdoor

The WordPress Plugin You Trusted Was Sold to an Attacker

Security

Smart Slider 3 Pro Supply Chain Compromise

Smart Slider 3 Pro 3.5.1.35 Was a Malicious Release

Security

Ninja Forms File Uploads CVE-2026-0740

Ninja Forms File Uploads CVE-2026-0740: The AJAX Pattern Strikes Again

 
Phil Taylor

Need help with your site?

Phil Taylor – Fixing websites since 2004

Found something wrong with your Joomla or WordPress site? If it were simple, you'd have fixed it already. I offer same-day expert help at a flat rate of £120 per incident. No hourly billing surprises.

✓ Hacked or compromised sites
✓ PHP errors and white screens
✓ Upgrades and PHP 8 compatibility
✓ Performance and hosting issues
Get expert help today

If I can't add value, you don't pay

mySites.guru

Website management since 2012

 
Unsubscribe
Reply all
Reply to author
Forward
0 new messages