Hackers exploit WordPress plugin auth bypass hours after disclosure

Published on April 10, 2025

Hackers started exploiting a high-severity flaw that allows bypassing authentication in the OttoKit (formerly SureTriggers) plugin for WordPress just hours after public disclosure. [...]