WordPress GravityForms Plugin Hacked to Include Malicious Code

A sophisticated supply chain attack has compromised the official GravityForms WordPress plugin, allowing attackers to inject malicious code that enables remote code execution on affected websites. The attack, discovered on July 11, 2025, represents a significant security breach affecting one of WordPress’s most popular form-building plugins, with the malware being distributed directly through the official […]

The post WordPress GravityForms Plugin Hacked to Include Malicious Code appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: