{
  "id": 6155495,
  "title": "Two major security flaws are affecting more than six million WordPress websites",
  "url": "https://urgent.news/2026/09/07/two-major-security-flaws-are-affecting-more-than-six-million",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-09-07T17:45:00.000Z",
  "source": {
    "name": "TechRadar",
    "slug": "techradar",
    "url": "https://www.techradar.com/pro/security/two-major-security-flaws-are-affecting-more-than-six-million-wordpress-websites"
  },
  "original_language": "en",
  "account": "Two critical vulnerabilities have been discovered in two popular WordPress plugins, Elementor Pro and Super Forms, affecting over six million websites. Wordfence, a security firm, disclosed the flaws which enable unauthenticated attackers to upload and execute arbitrary files, potentially leading to remote code execution. Both vulnerabilities allow exploitation attempts, exceeding 440,000 already, yet both were patched recently. The first bug, CVE-2026-32475, was found in Elementor Pro and the second, CVE-2026-14894, was identified in Super Forms. Both have a severity score of 9.8/10, classified as critical. Wordfence alone blocked over 190,000 exploit attempts for Elementor Pro and more than 250,000 for Super Forms. Experts recommend users to apply the fixes immediately due to the widespread use of these plugins and the active exploitation of these vulnerabilities.",
  "summary": "Patches are available, so WordPress users should hurry up and apply them.",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}