Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites
Source: The Hacker News
Threat actors are actively exploiting a critical security flaw in Everest Forms Pro, a WordPress plugin with about 4,000 active installations, to execute arbitrary code, leading to a complete site compromise.
The vulnerability in question is CVE-2026-3300 (CVSS score: 9.8), a remote code execution
Auto-curated by daily feed. Read original.