Back to all news
Security

Hackers target WordPress sites via third-party WooCommerce plugin

BleepingComputer·September 15, 2026·1 min read
Hackers target WordPress sites via third-party WooCommerce plugin

Hackers are actively exploiting a critical vulnerability in the WooCommerce Wholesale Lead Capture premium plugin for WordPress to upload a PHP backdoor. The attack targets sites using the plugin, allowing attackers to gain control. Site owners are urged to patch or remove the vulnerable plugin immediately.

Read at BleepingComputer
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store