Critical WordPress Modular DS Plugin Flaw Actively Exploited to Gain Admin Access
Ravie LakshmananJan 15, 2026Web Security /Vulnerability A maximum-severity security flaw in a WordPress plugin called Modular DS has come under active exploitation in the wild, according to Patchstack. The vulnerability, tracked as CVE-2026-23550 (CVSS score: 10.0), has been described as a case of unauthenticated privilege escalation impacting all versions of the plugin prior to and…
