Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A critical unauthenticated vulnerability in the WP Maps Pro WordPress plugin (versions 6.1.0 and earlier) allows any external attacker to create administrator accounts without credentials, granting full control of affected WordPress sites. Active exploitation is confirmed, with Wordfence reporting over 3,600 blocked attack attempts in a single 24-hour period, indicating automated mass scanning is underway. Organizations running this plugin on internet-facing WordPress sites face immediate risk of full site compromise, data theft, and malicious content injection.

Author

Tech Jacks Solutions