❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

20,000 WordPress Sites Compromised by Backdoor Vulnerability Enabling Malicious Admin Access

23 January 2026 at 07:30

A critical backdoor vulnerability discovered in the LA-Studio Element Kit for the Elementor plugin poses an immediate threat to more than 20,000 WordPress installations. The vulnerability, tracked as CVE-2026-0920 with a CVSS severity rating of 9.8 (Critical), enables unauthenticated attackers to create administrator accounts and achieve complete site compromise. The function fails to properly restrict […]

The post 20,000 WordPress Sites Compromised by Backdoor Vulnerability Enabling Malicious Admin Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Critical WordPress Plugin Vulnerability Exposes 100,000+ Websites to Privilege Escalation Attacks

20 January 2026 at 04:25

A critical privilege escalation vulnerability discovered in the Advanced Custom Fields: Extended WordPress plugin threatens over 100,000 active installations. The vulnerability, identified as CVE-2025-14533 with a CVSS score of 9.8, allows unauthenticated attackers to elevate their privileges to administrative by exploiting a misconfigured user registration form. The Advanced Custom Fields: Extended plugin, an addon for […]

The post Critical WordPress Plugin Vulnerability Exposes 100,000+ Websites to Privilege Escalation Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

❌
❌