wpForo SQL Injection Under Active Exploitation: Update Now (2026)
If your WordPress site runs the wpForo Forum plugin, check your version today. A high-severity SQL injection vulnerability — CVE-2026-1581 — is under active exploitation right now, and attackers don’t even need a login to your site to use it. The fix is simple: update wpForo to version 2.4.15 or... Read More