Follow us on Social Media

Hundreds of thousands of WordPress sites vulnerable due to critical Forminator leak: What you need to know!

Hundreds of thousands of WordPress sites are vulnerable due to a critical security vulnerability in the popular Forminator plugin. The vulnerability, known as CVE-2024-28890, has an impact score of 9.8 out of 10, meaning it is very serious and requires immediate action. The Forminator plugin, which is used to create web forms such as contact forms and polls, contains a […] Continue reading

  • 10+ years of experience
  • 100% Satisfaction Guarantee
  • Free quote within 24 hours
  • Microsoft partner
  • No contracts
  • Complete ICT management
  • Lowest price guarantee

Request a no-obligation quote →

Hundreds of thousands of WordPress sites vulnerable due to critical Forminator leak: What you need to know!
Hundreds of thousands of WordPress sites vulnerable due to critical Forminator leak: What you need to know!
Hundreds of thousands of WordPress sites vulnerable due to critical Forminator leak: What you need to know!
Hundreds of thousands of WordPress sites vulnerable due to critical Forminator leak: What you need to know!

We work on a punch card basis. You buy a bundle of hours, use us whenever you want, and only pay for the time we actually spend. 🙂 No waste, no ongoing monthly costs.

Watch directly →

Request an IT quote without obligation within 24 hours.

Starter

€95

120 minutes all year round

Ideal for: 1-3 employees

Order

  • Free advice
  • Organization-wide
  • No starting rate
  • Valid for 1 year
  • Mon-Fri: 09:00 – 17:00
  • Discount on rate at location

Professional

€179

270 minutes all year round

Ideal for: 3-6 employees

Order

  • Free advice
  • Organization-wide
  • No starting rate
  • Valid for 1 year
  • Mon-Fri: 09:00 – 17:00
  • Discount on rate at location

Hundreds of thousands of WordPress sites are vulnerable due to a critical vulnerability in the popular Forminator plugin. This vulnerability, known as CVE-2024-28890, has an impact score of 9.8 on a scale of 10. This means that the issue is very serious and requires immediate action. The Forminator plugin, which is used to create web forms such as contact forms and polls, contains a flaw that allows attackers to upload and execute dangerous files on the web server. Although version 1.29.0 of the plugin fixes the problem, it appears that a large number of websites are still vulnerable because they use older versions.

What is Forminator?

Forminator is a WordPress plugin that allows you to easily create different types of forms, such as contact forms, quizzes and polls. This plugin is used by more than half a million websites due to its user-friendly interface and versatile functionalities.

How does the vulnerability work?

The vulnerability in Forminator allows attackers to upload dangerous files to the server and execute them. This can lead to complete control over the affected website, with all the associated risks such as data loss, phishing and malware distribution.

Impact of the vulnerability

The Japan Computer Emergency Response Team Coordination Center (JPCERT/CC) has rated this vulnerability with a score of 9.8, indicating a critical vulnerability. Websites that have not been updated to version 1.29.0 or newer are at high risk.

Why are so many sites still vulnerable?

Although version 1.29.0 of the Forminator plugin fixes the vulnerability, figures show that around 45% of users are still using older versions. This is often due to outdated update procedures, inattention or lack of technical knowledge.

Steps to secure your site

  • Update the plugin: Make sure you always use the latest version of Forminator.
  • Check other plugins: Other plugins may also be vulnerable. Keep all your software up to date.
  • Use security plugins: Install additional security plugins that monitor suspicious activity.
  • Backup regularly: Make regular backups of your website to minimize data loss.
  • Limit file uploads: Limit the type of files users can upload.

Additional security tips

In addition to updating the Forminator plugin, there are additional measures you can take to secure your WordPress site:

  • Install a firewall: A firewall can help block malicious access attempts.
  • Use strong passwords: Make sure all your accounts have strong, unique passwords.
  • Restrict access rights: Only grant access to important parts of your site to trusted users.
  • Monitor your site: Actively monitor your website for suspicious activity.
  • Use SSL certificates: SSL certificates help secure data exchange between your site and its users.

Closing note

The vulnerability in the Forminator plugin is a serious issue that requires immediate attention. Make sure you keep your plugins up to date and take additional security measures to protect your website from attacks. By being proactive and regularly checking your security settings, you can significantly reduce risk. If you would like to know more about how to keep your website secure, consider consulting specialist services such as Flexamedia, who can help maintain and secure your WordPress site. For more information about website management and security, visit the about page WordPress maintenance.
With these tips and measures you ensure that your WordPress site is better protected against vulnerabilities and attacks.

An all-round ICT company in South Holland

ICT company in Vlaardingen

ICT services in Vondelwijk

Voorburg ICT solutions

Voorschoten IT experts

Voorhout ICT company

Waddinxveen IT services

Wassenaar ICT specialists

ICT services in Zoetermeer

Bennebroek ICT solutions

ICT expertise in Spijkenisse

Nieuwkoop IT support

Leiderdorp ICT services

Oude Wetering IT company

Alblasserdam IT solutions

ICT experts in Barendrecht

ICT services in Ypenburg

Bergschenhoek IT services

Utrecht ICT solutions

De Lier ICT support

ICT expertise in Hoofddorp

Bodegraven IT services

Katwijk aan Zee IT company

ICT services in Goedereede

Berkel and Rodenrijs ICT

Alphen aan den Rijn IT

ICT services in Benthuizen

Bleiswijk ICT solutions

ICT specialists in Bloemendaal

Boskoop IT services

ICT expertise in Brielle

Capelle aan den IJssel ICT

ICT solutions in Delfshaven

Capelle West IT services

ICT specialists in Delft

Haastrecht IT support

Gouda ICT solutions

ICT services in Heerjansdam

Groenswaard IT company

Heinenoord IT services

ICT specialists in Hellevoetsluis

Hoek van Holland IT

Hendrik Ido Ambacht ICT

Hillegom IT solutions

ICT expertise in Honselersdijk

ICT services in Oranjewijk

Katwijk aan den Rijn ICT

Leiden ICT solutions

ICT specialists in Lisse

ICT expertise in Maassluis

Maasdijk IT services

Mijnsheerenland IT company

IT services in Monster

Naaldwijk ICT solutions

ICT expertise in Nieuwenhoorn

Noordwijk Within IT

ICT services in Nieuw Helvoet

Kwintsheul IT support

Krimpen aan den IJssel ICT

Leimuiden IT services

Reeuwijk ICT solutions

ICT services in Rhoon

Rijnsburg IT support

Rijswijk ICT solutions

ICT experts in Ridderkerk

Rotterdam IT services

New Lekkerland ICT

Noordwijkerhout IT

Oegstgeest ICT solutions

ICT services in Poeldijk

Oud Beijerland IT

Pijnacker IT services

ICT experts in Scheveningen

Sassenheim IT solutions

ICT services in Schiedam

ICT expertise in 's Gravenzande

Benefit from our total solutions in ICT support

Other articles

What are the costs of poor IT management for freelancers?

What are the costs of poor IT management for freelancers? As a freelancer, you're on your own, and that includes IT management. You might be wondering, what exactly are the costs of poor IT management? Well, pay close attention, because they can really add up. Consider...

Read more

How do you improve Wi-Fi coverage in your building?

If you're looking to boost your Wi-Fi coverage in your building, you've come to the right place. Everyone knows how frustrating it is when your Netflix-watching evening is ruined by intermittent internet, or even worse, you can't get your work done because your connection constantly...

Read more