New Hosting Revenue — Unlocked!
Launch your own professional WordPress services without upfront
investment or headcount. Powered by Seahawk — Branded as you.
Spring Offer Your WordPress services. Under your brand. Earn up to 70% margin — offer closes April 30.
CLAIM THE OFFER

WordPress Pro Services. Extra 30% on your margins.

Zero Upfront Investment. Live in 2 weeks.

Start Earning More

The State of WordPress Agencies in 2026

210 agencies surveyed. One report.
Download free — no registration required.

Read the Report

NEW

ELS for MariaDB

Keep MariaDB 10.6 secure & compliant, no migration required

Learn More

HostPress made performance and protection standard for every customer, and cut support tickets.

SEE HOW THEY DID IT
WordPress Agency Survey 2026 | How are agencies handling security across client sites?
TAKE THE SURVEY
Running VPS? Bundle Imunify360 with CloudLinux. Automated security. Up to 55% off licensing.
Learn more
KernelCare
Don't reboot. Don't stay exposed. KernelCare live-patches kernel CVEs
Start Free Trial
Imunify Logo
  • START FREE TRIAL
  • Login
  • Support
  • Products
        • THE PLATFORM
          OVERVIEW
          WHY IMUNIFY360?
          6 Layers of Protection
          Automated Expertise
          Optimized Performance
          Reduced Operational Overhead
          ANTIVIRUS
          EXTENSIONS

  • Pricing
  • Resources
        • USING IMUNIFY
          How to Get Started
          How to Install
          Documentation
          FAQ
          Community Forum
          WHAT’S NEW
          Blog
          Webinars
          Release Notes
          Changelog
          Product Roadmap
          All resources
          RESEARCH
          Success Stories
          Whitepapers
          Provider Directory
          FEATURED
WordPress CVE-2026-64638: Imunify360 Already Blocks the Severe Login XSS to RCE Chain

WordPress CVE-2026-64638: Imunify360 Already Blocks the Severe Login XSS to RCE Chain

by Akos Vajda | Aug 7, 2026 | Imunify360 Blog

📋 TL;DR WordPress 7.0.3, released on August 6, fixes CVE-2026-64638: a high-severity (CVSS 8.9) cross-site scripting (XSS) flaw on the login screen that needs no authentication to trigger and can be chained into remote code execution. Every WordPress version from...
New: Under Attack Mode stops a targeted flood in its tracks

New: Under Attack Mode stops a targeted flood in its tracks

by Akos Vajda | Aug 4, 2026 | Imunify360 Blog

Under Attack Mode (UAM) is available now in WebShield, the Imunify360 layer that filters traffic in front of your web server. It is a switch you throw when one domain comes under an automated flood. The domain, or just the paths you choose, goes behind a lightweight...
ImunifyAV+ Pricing Update: Changes Effective in 2026

ImunifyAV+ Pricing Update: Changes Effective in 2026

by Vladimir Markevich | Aug 3, 2026 | Imunify360 Blog

CloudLinux is introducing updates to the pricing model for ImunifyAV+. These changes align ImunifyAV+ with the tiered structure already used by Imunify360 and support continued investment in malware detection, protection technologies, and product development. The...
New: Imunify360 now throttles AI bots overloading WordPress sites

New: Imunify360 now throttles AI bots overloading WordPress sites

by Akos Vajda | Jul 23, 2026 | Imunify360 Blog

Imunify360 can now throttle AI crawlers instead of forcing a choice between letting them run unchecked and blocking them outright. AI Bot Management, a new feature delivered through the Imunify Security plugin for WordPress, classifies incoming bot traffic, verifies...
WordPress core RCE (wp2shell): our weekend WAF response

WordPress core RCE (wp2shell): our weekend WAF response

by Sviatoslav Gormash | Jul 23, 2026 | Imunify360 Blog

A WordPress security hole doesn’t wait for business hours. When a maximum-severity, no-login-required takeover bug landed in WordPress core, the race was on: the fix was already public, and attackers were reverse-engineering it to find sites that hadn’t...
The Hidden Risk: When WP Automation Executes Malware as Root

The Hidden Risk: When WP Automation Executes Malware as Root

by Gleydson Soares | Jul 20, 2026 | Imunify360 Blog

A single hidden file on one WordPress site can quietly take over an entire server, and the trigger is a command your team might run without thinking. Running WP-CLI as root with –allow-root isn’t standard practice, but as recent telemetry shows, it does...
« Older Entries

Search

Recent Posts

  • WordPress CVE-2026-64638: Imunify360 Already Blocks the Severe Login XSS to RCE Chain
  • New: Under Attack Mode stops a targeted flood in its tracks
  • ImunifyAV+ Pricing Update: Changes Effective in 2026
  • New: Imunify360 now throttles AI bots overloading WordPress sites
  • WordPress core RCE (wp2shell): our weekend WAF response

Recent Comments

    PRODUCTS

    • Imunify360
    • ImunifyAV
    • Imunify Email
    • Imunify Patch
    • Pricing

    RESOURCES

    • Imunify360 support portal
    • Community Forum
    • Contact support
    • Login to CLN
    • Resources
    • FAQ
    • Documentation
    • Getting Started
    • Online Helpdesk
    • Blog

    COMPANY

    • About Us
    • Contact
    • Careers We’re hiring!
    • Legal
    • Do Not Sell My Personal Data
    • Security & Privacy
    • Vulnerability Reporting

    Contact Us

    • lContact Sales
    • Contact Support
    • Submit Feature Request
    • FOLLOW
    © All rights reserved. Imunify360 and CloudLinux Backup are the registered trademarks of Cloud Linux Software, Inc.
    Terms of Use | Privacy Policies Hub | Legal | DMCA Notice