← Back to feed
vendor Wordfence Blog

Attackers Actively Exploiting Critical Vulnerability in WooCommerce Wholesale Lead Capture Plugin

Wordfence Blog WordPress

On February 20th, 2026, a critical Unauthenticated Arbitrary File Upload vulnerability was publicly disclosed in WooCommerce Wholesale Lead Capture, a premiu...

T1190
Read the full story Wordfence Blog →

Related Coverage

vendor ICYMI: August 2026 @AWS Security AWS Security Blog · Sep 23 vendor Reimagining the SOC for the agentic era in Microsoft Defender Microsoft Security Blog · Sep 23 vendor CISA BOD 26-04 Timelines for Three Linux Kernel CVEs Qualys Blog · Sep 23