20,000 WordPress Sites Vulnerable to Arbitrary File Upload and Deletion Attacks

Critical security vulnerabilities discovered in a popular WordPress plugin have placed more than 20,000 websites at risk of complete site takeover.  Security researchers identified two high-severity flaws in the WP Ultimate CSV Importer plugin that could allow even low-privileged users to upload malicious code or delete critical files on affected websites. Significant Vulnerabilities Uncovered CVE-2025-2008 […]

The post 20,000 WordPress Sites Vulnerable to Arbitrary File Upload and Deletion Attacks appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: