Hackers are exploiting a critical flaw affecting >350,000 WordPress sites
Hackers are actively exploiting a vulnerability that allows them to execute commands and malicious scripts on Websites running File Manager, a WordPress plugin with more than 700,000 active installations, researchers said on Tuesday.
Attackers are using the exploit to upload files that contain webshells that are hidden in an image. Word of the attacks came a few hours after the security flaw was patched. Website security firm Wordfence said that it had blocked more than 450,000 exploit attempts in the past few days.
Source: Hackers are exploiting a critical flaw affecting >350,000 WordPress sites | Ars Technica