Home / Sep 05, 2026 / Story
0
#8 The Hacker News general September 04, 2026 at 08:48 UTC

Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws

By [email protected] (The Hacker News)

AI Summary

Wordfence documented over 440,000 exploit attempts targeting two critical WordPress plugin vulnerabilities: CVE-2026-14894 (CVSS 9.8) in Super Forms allowing unauthenticated arbitrary file upload, and a separate critical RCE flaw in Elementor Pro. The attack volume targeting these plugins indicates active, widespread exploitation campaigns that place millions of WordPress sites at risk.

Relevance score: 80.0/100

# More from September 05