https://securityaffairs.com/194059/hacking/shapedplugin-supply-chain-attack-backdoors-pro-plugin-updates.html
#securityaffairs #hacking
WordPress Plugins Backdoored in ShapedPlugin Supply Chain Attack
A recent supply chain attack on ShapedPlugin compromised the updates for several WordPress plugins, including Product Slider Pro for WooCommerce, injecting backdoor code that could give attackers full control of affected sites. This severe vulnerability, rated 10.0 on the CVSS scale, highlights the importance of staying vigilant about plugin…
#SupplyChain #Wordpress #Shapedplugin #Cve202649777 #Backdoor
#ShapedPlugin update flow hacked to infect #WordPress sites
CVE Alert: CVE-2026-3017 - shapedplugin - Smart Post Show – Post Grid, Post Carousel & Slider, and List Category Posts - https://www.redpacketsecurity.com/cve-alert-cve-2026-3017-shapedplugin-smart-post-show-post-grid-post-carousel-slider-and-list-category-posts/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-3017 #shapedplugin #smart-post-show-post-grid-post-carousel-and-slider-and-list-category-posts

The Smart Post Show – Post Grid, Post Carousel & Slider, and List Category Posts plugin for WordPress is vulnerable to PHP Object Injection in all