Hackers Exploit WordPress Plugin Security Flaws, Exposing 40,000 Sites to Complete Takeover Risk – Here’s How to Stay Safe


  • Patchstack found critical Modular DS flaw (CVE-2026-23550) allowing admin bypass
  • Vulnerability scored 10/10 and is already being exploited in the wild
  • The vendor released a fix in version 2.5.2; users are encouraged to upgrade immediately

If your WordPress site is running the Modular DS plugin, you may want to update to the latest version as soon as possible.

Modular DS is a popular WordPress plugin used by more than 40,000 websites that allows website administrators to manage multiple WordPress websites from a single dashboard.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top