20,000 WordPress Sites Affected by Backdoor Vulnerability Allowing Malicious Admin User Creation

A critical backdoor vulnerability has been discovered in the LA-Studio Element Kit for Elementor, a popular WordPress plugin used by more than 20,000 active sites. This security flaw allows attackers to create administrator accounts without any authentication, putting thousands of websites at risk of complete takeover. The vulnerability, tracked as CVE-2026-0920, carries a CVSS score […]

The post 20,000 WordPress Sites Affected by Backdoor Vulnerability Allowing Malicious Admin User Creation appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: