Skip to content
The Nexus
SECURITYJun 6 · 14:09 UTCBLEEPING COMPUTERBill Toulas

Critical Everest Forms Pro flaw exploited to take over WordPress sites

Hackers are actively exploiting a critical vulnerability (CVE-2026-3300) in the Everest Forms Pro plugin, allowing them to take complete control of WordPress websites.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this
Related Signal

Adjacent reporting