
WordPress Plugin Vulnerability Exposes 100,000 Sites to Complete Site Takeover Attacks
A critical vulnerability tracked as CVE-2026-19598 in the Everest Forms WordPress plugin has exposed more than 100,000 websites to complete site takeover attacks. The flaw has a CVSS severity score of 9.8. It can allow unauthenticated attackers to upload malicious files, execute code remotely, and potentially gain full control of affected WordPress sites. The vulnerability […]
The post WordPress Plugin Vulnerability Exposes 100,000 Sites to Complete Site Takeover Attacks appeared first on Cyber Security News.