In this week's knowledge share, I will talk about nulled plugins and themes - how they are a hidden security risk, how they harm trust in open source, and what you can do to make things right.

I will then cover this week's vulnerability news, which highlights two security bugs in abandoned plugins and one authenticated remote code execution bug that was recently patched.