CVE
CVE-2026-94504
- First Reported
- Oct 6, 2026
- Latest Reported
- Oct 6, 2026
Reported Context (1)
- They are tracked as CVE-2026-93836, affecting WPC Product Bundles for WooCommerce versions 8.6.6 and older, and CVE-2026-94504, affecting Ninja Forms versions 3.15.3 and older. Hackers Exploit WordPress Plugin XSS Flaws to Install Backdoors
CVE (1)
Malware (1)
MITRE ATT&CK (5)
Products (4)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.