Security News Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites TheHackerNews Daniel Bender 05 Jun 2026 Share Threat actors are actively exploiting CVE-2026-3300, a critical RCE vulnerability (CVSS 9.8) in Everest Forms Pro WordPress plugin (4,000+ installs).