![New Vulnerability in Popular WordPress Plugin Exposes Over 2 Million Sites to Cyberattacks New Vulnerability in Popular WordPress Plugin Exposes Over 2 Million Sites to Cyberattacks](https://search.ai.wiki/wp-content/uploads/2023/05/new-vulnerability-in-popular-wordpress-plugin-exposes-over-2-million-sites-to-cyberattacks.jpg)
New Vulnerability in Popular WordPress Plugin Exposes Over 2 Million Sites to Cyberattacks
Users of Advanced Custom Fields plugin for WordPress are being urged to update version 6.1.6 following the discovery of a security flaw.
The issue, assigned the identifier CVE-2023-30777, relates to a case of reflected cross-site scripting (XSS) that could be abused to inject arbitrary executable scripts into otherwise benign websites.
The plugin, which is available both as a free and pro