Tag
Hackers are actively exploiting a critical remote code execution vulnerability (CVE-2026-3300) in the Everest Forms Pro WordPress plugin, affecting versions up to 1.9.12. The flaw allows unescaped form values to be passed to eval(), enabling full site compromise. Wordfence urges immediate plugin updates.
WordPress 7.0 is a major release featuring a redesigned navigation overlay, AI integration through a centralized Connectors hub, visual revisions, pattern handling as single blocks, performance improvements, enhanced accessibility, and a refreshed admin experience.
WordPress 7.0, codenamed Armstrong, has been released, marking a major update to the popular content management system.