Infosecurity Magazine·10d ago highPHP Webshell Campaign Targets WordPress Through Critical WooCommerce Plugin Bug#cve-2026-27540#file-upload#rce in the wild 2 min
SOCRadar·10d ago highCVE-2026-27540 WooCommerce Flaw Exploited#exploitation#file-upload#plugin in the wild1
The Hacker News·11d ago highAttackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells#arbitrary-file-upload#rce#the-events-calendar in the wild 3 min
BleepingComputer·11d ago highHackers target WordPress sites via third-party WooCommerce plugin#cve#file-upload#plugin in the wild 2 min2
GBHackers·11d ago highHackers Actively Exploit Critical WooCommerce Plugin Vulnerability to Upload PHP Backdoors#cve-2026-27540#file-upload#rce in the wild 4 min
Cyber Security News·11d ago highHackers Exploit WooCommerce Plugin Bug to Take Over WordPress Sites Without Login#cve-2026-27540#file-upload#webshell in the wild 5 min
Wordfence·12d ago highAttackers Actively Exploiting Critical Vulnerability in WooCommerce Wholesale Lead Capture Plugin#exploitation#file-upload#plugin in the wild1
The Record·24d agoHackers expose donor data from Russian fundraisers for Ukrainians, political prisoners#data-breach#fundraising#political-prisoners 3 min
Exploit-DB·Aug 17, 2026[webapps] WooCommerce 1.5.0 - Unauthenticated Arbitrary File Upload#ecommerce#file-upload#pocExploit / PoC