[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"focus:five-critical-wordpress-plugin-and-theme-flaws-enable-site-takeover-or-rce-mtg8ooxk":3},{"item":4},{"id":5,"title":6,"slug":7,"summary":8,"severity":9,"category":10,"cve_ids":11,"affected_products":12,"action_required":18,"article_ids":19,"ioc_summary":21,"source_urls":22,"status":24,"expires_at":25,"created_at":26,"updated_at":27,"articles":28},"9e7b7dbc-f7b3-43b0-ba3b-40fcccc08564","Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE","five-critical-wordpress-plugin-and-theme-flaws-enable-site-takeover-or-rce-mtg8ooxk","Critical vulnerabilities (CVSS 10.0) discovered in five major WordPress plugins\u002Fthemes: WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP. Unauthenticated attackers can bypass authentication, hijack accounts, execute arbitrary code, and fully compromise affected sites. Any organization running WordPress with these plugins\u002Fthemes is at immediate risk.","critical","advisory",[],[13,14,15,16,17],"WPMU DEV Dashboard","Avada","TranslatePress","Pods","GiveWP","Audit all WordPress instances for WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP installations. Update to patched versions immediately. If updates unavailable, disable plugins\u002Fthemes until patches release. Scan web logs for exploitation attempts targeting these components.",[20],"7d2c7597-834d-4ae1-8636-2277c54f2ce5",null,[23],"https:\u002F\u002Fthehackernews.com\u002F2026\u002F08\u002Ffive-critical-wordpress-plugin-and.html","active","2026-09-01T20:05:39.763+00:00","2026-08-30T20:05:45.725782+00:00","2026-08-30T20:06:20.286102+00:00",[29],{"id":20,"title":6,"url":23}]