Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
2026-09-05T13:24:00Z•4b17e98d28983a6f9a9f455795603b4ee4ef8ba0a7de1182aa810a75197a859e
CVE-2026-32475CVE-2026-6471CVE-2026-73749CVE-2026-9586AI-securityElementor-ProGoogle-ChromeHPE-AOS-CXPostgreSQLSangoma-SwitchvoxVMwareWordPressactive-exploitationarbitrary-file-uploadcritical-infrastructureprivilege-escalationremote-code-executionsql-injectionvulnerabilityzero-day
What happened
SecurityWeek feed highlights multiple September 2026 cybersecurity developments, including active exploitation of critical vulnerabilities in Elementor Pro, Sangoma Switchvox, and potentially Chrome; critical RCE issues in HPE AOS-CX; a PostgreSQL takeover flaw; and VMware host code-execution risks. It also includes security-industry and AI business news. The most urgent items involve internet-facing products with remote code execution or active exploitation.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 4b17e98d28983a6f9a9f455795603b4ee4ef8ba0a7de1182aa810a75197a859e
- Enrichment time
- 2026-09-05T13:24:00Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.