A backdoored ARVE WordPress Plugin release could grant attackers administrator access with one token, but WordPress.org blocked automatic distribution to WordPress sites.
First seen on hackread.com
Jump to article: hackread.com/wordfence-critical-backdoor-arve-wordpress-plugin/
![]()

