< Back to all clusters
[TECHNOLOGY] · United States, Germany · 6 sources

started · updated

WordPress and Joomla websites face increased cyberattacks

Cybercriminals are increasingly targeting websites built on WordPress and Joomla, exploiting critical vulnerabilities. Security experts and agencies, including the US-based CISA, have reported active exploitation of high-risk flaws. Specifically, the Astroid template framework and the JCE content editor have been identified with vulnerabilities carrying a maximum CVSS risk score of 10.0.

Data from security specialist Patchstack indicates a significant rise in threats, with approximately 11,334 new vulnerabilities discovered in the WordPress ecosystem in 2025, representing a 42 percent increase from the previous year. Notably, 91 percent of these vulnerabilities reside in plugins and themes rather than the core software. Furthermore, security service Sansec has reported a campaign targeting over one million WordPress sites.

Experts warn that attackers often exploit newly released vulnerabilities within hours, frequently before patches are available. For administrators, a hack can result in the loss of admin access through deleted accounts or changed credentials. Effective recovery requires a thorough analysis of the entry point and a complete backup of files and databases to prevent attackers from using hidden backdoors to re-enter the system.

Entities

CISA · Joomla · Patchstack · Sansec · WordPress

Claims

What the coverage asserts, and how many sources carry each claim.