
Defiant warned of active exploitation of WooCommerce Wholesale Lead Capture Plugin flaw (CVE‑2026‑27540) Critical unauthenticated file‑upload bug lets attackers deploy PHP webshells for site takeover Patch released in Feb 2026 (v2.0.3.2)…
View original source — TechRadar ↗



