Critical WP Maps Pro Vulnerability Actively Exploited to Create Admin Accounts

Published: 2026-06-01
Category: technology
Source: The Hacker News
Original source

Threat actors are actively exploiting a critical security flaw, CVE-2026-8732, in the WordPress plugin WP Maps Pro to create unauthorized administrator accounts on vulnerable websites. This privilege escalation bug, rated 9.8 on the CVSS scale, affects all plugin versions up to and including 6.1.0 and has been addressed in version 6.1.1.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai