ShapedPlugin WordPress Pro Plugins Backdoored in Supply Chain Attack
Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack after unknown threat actors tampered with the official release channels…
Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack after unknown threat actors tampered with the official release channels…
CVE-2026-10735 is a high-severity vulnerability (CVSS 9.8) covering the entire supply chain incident affecting multiple ShapedPlugin Pro plugins. Attackers compromised the vendor's…
ShapedPlugin is a WordPress plugin vendor whose Pro plugins were backdoored in a supply chain attack. The company confirmed the incident and…
Real Testimonials Pro version 3.2.5 from ShapedPlugin was compromised in a supply chain attack, with backdoor code injected into the official update…
Smart Post Show Pro versions before 4.0.2 from ShapedPlugin were backdoored in a supply chain attack, impacting users who installed updates from…