WordPress Plugin Vulnerability Exposes 100,000 Sites to Complete Site Takeover Attacks

A critical vulnerability tracked as CVE-2026-19598 in the Everest Forms WordPress plugin has exposed more than 100,000 websites to complete site takeover attacks. The flaw has a CVSS severity score of 9.8. It can allow unauthenticated attackers to upload malicious files, execute code remotely, and potentially gain full control of affected WordPress sites. The vulnerability […]

This article has been indexed from Cyber Security News

Read the original article: