CYBER● ELEVATED2h ago · Sep 4, 2026, 8:48 AM
Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws
The Hacker News · global
Threat actors are exploiting two critical security flaws in WordPress plugins Super Forms and Elementor Pro, according to findings from Wordfence. The vulnerabilities in question are - CVE-2026-14894 (CVSS score: 9.8) - A missing file type validation vulnerability in Super Forms – Drag & Drop Form Builder that allows unauthenticated attackers to upload files of any type, including
GlobeAlert aggregates and classifies open sources; the story above belongs to its publisher. Summaries are machine-generated from the source text.
More in Cyber
CYBERnow[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AIDark ReadingCYBERnow[Virtual Event] Building a Secure AI Strategy for the EnterpriseDark ReadingCYBER24m agoAI Coding Agents Are Installing Unknown/Untrusted Code on Corporate NetworksSchneierCYBER2h agoCustomer service a major ruse as phone scam losses up 56% in first half of yearSouth China Morning Post