Description
The uncanny-automator-pro WordPress plugin before 7.3.0.6 was distributed with malicious code after the vendor-s uncanny-automator-pro WordPress plugin before 7.3.0.6 update/distribution infrastructure was compromised; the injected backdoor grants unauthenticated attackers an administrator session on affected sites and beacons the site-s secret keys and administrator details to attacker-controlled servers.
CVSS 9.8EPSS 0.303%Risk 1.01
View source- Published
- 2026-07-07 06:16:22
- Affected versions
- <7.3.0.6
- Type
- Web application
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H