Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical Exploit Attempts on Super Forms and Elementor Pro

Critical Exploit Attempts on Super Forms and Elementor Pro

Posted on September 4, 2026 By CWS

Researchers from Wordfence have identified significant security vulnerabilities in two popular WordPress plugins: Super Forms and Elementor Pro. These plugins are currently being targeted by threat actors, utilizing critical flaws to gain unauthorized access to affected websites. The focus keyword ‘WordPress security vulnerabilities’ highlights the severity of these issues.

Details of the Security Flaws

The vulnerabilities include CVE-2026-14894, with a CVSS score of 9.8, and CVE-2026-32475, both allowing unauthenticated attackers to upload potentially harmful files. These flaws could lead to remote code execution, threatening the integrity of WordPress sites using these plugins. Super Forms’ vulnerability was patched in version 6.3.314, while Elementor Pro’s was addressed in version 4.2.2.

An attacker could exploit these vulnerabilities to upload a PHP web shell, enabling actions like creating new admin accounts or exfiltrating site data. Notably, CVE-2026-32475’s details were disclosed by Patchstack last month, requiring a published Elementor page with a File Upload field for successful exploitation.

Current Exploit Attempts and Impact

Wordfence has already blocked over 250,000 and 190,000 attempts targeting CVE-2026-14894 and CVE-2026-32475, respectively. The attack on Super Forms involves an HTTP POST request to ‘/wp-admin/admin-ajax.php,’ with a Base64-encoded PHP payload disguised as an image file. This method has been traced back to several IP addresses.

For Elementor Pro, the exploit manipulates the File Upload field to bypass validation, placing the malicious PHP file in the ‘/wp-content/uploads/elementor/forms/’ directory. The attacks on this plugin began on August 19, 2026, with various IP addresses identified as sources.

Recommendations for WordPress Site Owners

WordPress administrators using these plugins are strongly advised to implement the available patches immediately. Additionally, it is crucial to scan for indicators of compromise and audit for any unexpected or recently modified PHP files. These proactive measures are essential to safeguarding websites from these active threats.

As cyber threats continue to evolve, maintaining updated security practices is vital. Ensuring plugins are current and monitoring site integrity can mitigate risks associated with vulnerabilities like those found in Super Forms and Elementor Pro.

The Hacker News Tags:CVE-2026-14894, CVE-2026-32475, Cybersecurity, Elementor Pro, Patchstack, plugin exploits, RCE flaws, remote code execution, Security, Super Forms, Vulnerabilities, web security, website protection, Wordfence, WordPress

Post navigation

Previous Post: DPRK-Linked Malicious macOS Installers Steal Credentials
Next Post: Dahua Cameras Breached: Persistent Backdoor Vulnerabilities

Related Posts

Ensuring Secure AI Adoption in Enterprises Ensuring Secure AI Adoption in Enterprises The Hacker News
Blind Eagle Uses Proton66 Hosting for Phishing, RAT Deployment on Colombian Banks Blind Eagle Uses Proton66 Hosting for Phishing, RAT Deployment on Colombian Banks The Hacker News
Securing Data in the AI Era Securing Data in the AI Era The Hacker News
Microsoft Removes Password Management from Authenticator App Starting August 2025 Microsoft Removes Password Management from Authenticator App Starting August 2025 The Hacker News
Ukrainian National Imprisoned for North Korea IT Fraud Ukrainian National Imprisoned for North Korea IT Fraud The Hacker News
OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Phishing in Microsoft 365 Exploits Empty Envelope Sender
  • OpenAI Agents Exploit German Wiki to Share Bypass Tactics
  • Nvidia Acquires AI Platform Hugging Face for $13 Billion
  • Microsoft Addresses Exchange Online Email Delays
  • Google Addresses Sixth Chrome Zero-Day in 2026

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Phishing in Microsoft 365 Exploits Empty Envelope Sender
  • OpenAI Agents Exploit German Wiki to Share Bypass Tactics
  • Nvidia Acquires AI Platform Hugging Face for $13 Billion
  • Microsoft Addresses Exchange Online Email Delays
  • Google Addresses Sixth Chrome Zero-Day in 2026

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark