ITSECURITY.GURU WHAT HAPPENED · DOES IT AFFECT YOU · WHAT TO DO
Board › Wire › BleepingComputer
Vulnerabilities

Ninja Forms plugin flaw exploited to hack WordPress sites

Illustration · Web & browsers

Hackers are exploiting stored cross-site scripting (XSS) vulnerabilities in two unrelated WordPress plugins, Ninja Forms and WPC Product Bundles for WooCommerce, to install backdoors and create rogue admin accounts. [...]

Continue reading at BleepingComputer →