Loading…

Hackers are exploiting stored cross-site scripting (XSS) vulnerabilities in two unrelated WordPress plugins, Ninja Forms and WPC Product Bundles for WooCommerce, to install backdoors and create rogue admin accounts. [...]
To respect copyright, we link to the source rather than republishing the full text. Read the complete article on BleepingComputer.