{"id":191039,"date":"2022-05-18T11:26:35","date_gmt":"2022-05-18T09:26:35","guid":{"rendered":"http:\/\/sftarticles.wpenginepowered.com\/en\/?p=191039"},"modified":"2025-07-01T20:45:09","modified_gmt":"2025-07-02T03:45:09","slug":"vulnerability-thousands-of-wordpress-websites","status":"publish","type":"post","link":"https:\/\/cms-articles.softonic.io\/en\/vulnerability-thousands-of-wordpress-websites\/","title":{"rendered":"Vulnerability found in thousands of WordPress websites"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">WordPress is one of the most popular content management systems (CMS) available today. For millions and millions of websites around the world, it is like the operating system that makes all the technical wizardry you see on their web pages possible. WordPress is like the operating system and then WordPress plugins are like the programs used for particular tasks or jobs. Unfortunately, <strong>security analysts have discovered a vulnerability in a popular WordPress plugin<\/strong> used by thousands of websites worldwide.<\/p>\n\n\n<div class=\"sc-card-program\">\r\n  <div class=\"sc-card-program__body\">\r\n    <div class=\"sc-card-program__row clearfix\">\r\n      <div class=\"sc-card-program__col-logo\">\r\n        <img decoding=\"async\" class=\"sc-card-program__img\" alt=\"WordpPress\" src=\"https:\/\/images.sftcdn.net\/images\/t_app-logo-xl,f_auto\/p\/8b68604c-96d6-11e6-a586-00163ed833e7\/2997153311\/wordpress-cms-icon.png\" width=\"100px\" height=\"100px\">\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-title\">\r\n        <span class=\"sc-card-program__title\">WordpPress<\/span>\r\n        <a class=\"sc-card-program__button sc-card-program-internal\" href=\"https:\/\/wordpress-cms.en.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\">Download Now<\/a>\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-rating\">\r\n        <svg class=\"rating-score__content\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" version=\"1.1\" x=\"0\" y=\"0\" viewbox=\"0 0 50 50\" enable-background=\"new 0 0 50 50\" xml:space=\"preserve\"><path class=\"rating-score__background rating-score--good\" fill=\"none\" stroke-width=\"6\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><path class=\"rating-score__value rating-score__value--0\" fill=\"none\" stroke-width=\"6\" stroke-dashoffset=\"0\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><text class=\"rating-score__number\" content=\"\" text-anchor=\"middle\" transform=\"matrix(1 0 0 1 25 31.0837)\" data-auto=\"app-user-score\"><\/text><\/svg>\r\n      <\/div>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <span class=\"sc-card-program__description\"><\/span>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <img decoding=\"async\" class=\"sc-card-program__bigpic\" src=\"\" onerror=\"this.style.display='none'\">\r\n    <\/div>\r\n    <a class=\"sc-card-program__link track-link sc-card-program-internal\" href=\"https:\/\/wordpress-cms.en.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\"><\/a>\r\n  <\/div>\r\n<\/div>\n\n\n\n<p class=\"wp-block-paragraph\">Analysts from the <a href=\"https:\/\/www.wordfence.com\/blog\/2022\/05\/millions-of-attacks-target-tatsu-builder-plugin\/\" target=\"_blank\" rel=\"noreferrer noopener\">Wordfence Threat Intelligence team<\/a> recently discovered a <strong>vulnerability in the Tatsu Builder plugin<\/strong>, which they estimate has been <strong>installed on WordPress sites between 20,000 and 50,000 times<\/strong>. The team reports that they started seeing attacks on May 10, 2022, with the peak coming on May 14 when they saw over 5.9 million attacks. The attacks included a dropper, which would later install malware onto the victims\u2019 devices.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Tatsu<\/strong> detected the attack early on and quickly <strong>notified all of their customers of the attack<\/strong>. Unfortunately, the Wordfence Threat Intelligence team believes that <strong>at least a quarter of those customers are yet to take action<\/strong> against the vulnerability. This means that there could be <strong>anything up to or even over 12,000 sites that are still vulnerable<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you are an admin of a WordPress site that uses Tatsu Builder, the Wordfence team recommends you <strong>update to the latest version (3.3.13) <\/strong>as quickly as possible. That version contains a patch that fully addresses the issue. It is important to get the latest version as the previous version (3.3.12) was rolled out with a patch but it didn\u2019t fully address the issue. Another security step WordPress users can take is to <strong>install the Wordfence Web Application Firewall<\/strong>, which comes with the free version of the service. Wordfence does have premium subscriptions available too, which offer more enhanced features on top of the firewall.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you are worried about cybersecurity and would like to keep on top of the issue, check out our <a href=\"https:\/\/norton-security-premium.en.softonic.com\/articles\/malware-phishing-spyware-viruses\" target=\"_blank\" rel=\"noreferrer noopener\">guide to malware, phishing, spyware, and viruses<\/a>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Image via: <a href=\"https:\/\/www.wordfence.com\/blog\/2022\/05\/millions-of-attacks-target-tatsu-builder-plugin\/\" target=\"_blank\" rel=\"noreferrer noopener\">Wordfence Threat Intelligence<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>WordPress is one of the most popular content management systems (CMS) available today. For millions and millions of websites around the world, it is like the operating system that makes all the technical wizardry you see on their web pages possible. WordPress is like the operating system and then WordPress plugins are like the programs &hellip; <a href=\"https:\/\/cms-articles.softonic.io\/en\/vulnerability-thousands-of-wordpress-websites\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Vulnerability found in thousands of WordPress websites&#8221;<\/span><\/a><\/p>\n","protected":false},"author":9073,"featured_media":191063,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","wpcf-pageviews":0},"categories":[1015],"tags":[2594],"usertag":[],"vertical":[],"content-category":[],"class_list":["post-191039","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","tag-app-subdomain-redirectionwordpress-cms"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/191039","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/users\/9073"}],"replies":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/comments?post=191039"}],"version-history":[{"count":1,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/191039\/revisions"}],"predecessor-version":[{"id":323894,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/191039\/revisions\/323894"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/media\/191063"}],"wp:attachment":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/media?parent=191039"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/categories?post=191039"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/tags?post=191039"},{"taxonomy":"usertag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/usertag?post=191039"},{"taxonomy":"vertical","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/vertical?post=191039"},{"taxonomy":"content-category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/content-category?post=191039"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}