Smart Business Tips
Sign In
  • Home
  • Business
    • Business Coaching
    • Business Growth
    • Business Tools & Apps
  • Entrepreneurship
    • Entrepreneurs
    • Crypto
    • Innovation
    • Investing
    • Leadership
    • Productivity
  • Contact US
    • Blog
  • Branding
    • Content Marketing
    • Digital Marketing
    • E-commerce
    • Marketing Strategies
    • Personal Finance
  • Sales
    • Small Business Tips
    • Social Media
    • Startups
    • Tech Trends
    • Investing
  • Shop
Notification
Empire Life Blog The power of sleep—and how your group benefits can help you today
Investing

Empire Life Blog The power of sleep—and how your group benefits can help you today

Your First Look at Pixel 10’s Biggest Feature
Tech Trends

Your First Look at Pixel 10’s Biggest Feature

.9 Billion In FTX Payouts To Hit Crypto Market Soon, Here’s When
Crypto

$1.9 Billion In FTX Payouts To Hit Crypto Market Soon, Here’s When

NotebookLM adds featured notebooks from The Economist, The Atlantic, and others
Tech Trends

NotebookLM adds featured notebooks from The Economist, The Atlantic, and others

Font ResizerAa
Smart Business TipsSmart Business Tips
  • Home
  • Business
  • Entrepreneurship
  • Contact US
  • Branding
  • Sales
  • Shop
Search
  • Home
  • Business
    • Business Coaching
    • Business Growth
    • Business Tools & Apps
  • Entrepreneurship
    • Entrepreneurs
    • Crypto
    • Innovation
    • Investing
    • Leadership
    • Productivity
  • Contact US
    • Blog
  • Branding
    • Content Marketing
    • Digital Marketing
    • E-commerce
    • Marketing Strategies
    • Personal Finance
  • Sales
    • Small Business Tips
    • Social Media
    • Startups
    • Tech Trends
    • Investing
  • Shop
Sign In Sign In
Follow US
Made by ThemeRuby using the Foxiz theme. Powered by WordPress
Smart Business Tips > Blog > Content Marketing > Malware Discovered In Gravity Forms WordPress Plugin
Content Marketing

Malware Discovered In Gravity Forms WordPress Plugin

Admin45
Last updated: July 14, 2025 9:48 am
By
Admin45
3 Min Read
Malware Discovered In Gravity Forms WordPress Plugin
SHARE


Contents
Supply Chain AttackGravity Forms Responds

WordPress security company Patchstack published an advisory about a serious vulnerability in Gravity Forms caused by a supply chain attack. Gravity Forms responded immediately and released an update to fix the issue.

Supply Chain Attack

Patchstack has been monitoring an attack on a WordPress plugin in which the attackers uploaded an infected version of the plugin directly to the publisher’s repository and fetched other files from a domain name similar to the official domain. This, in turn, led to a serious compromise of websites that used that plugin.

A similar attack was observed in Gravity Forms and was immediately addressed by the publisher. Malicious code had been injected into Gravity Forms (specifically in gravityforms/common.php) by the attackers. The code caused the plugin, when installed, to make HTTP POST requests to the rogue domain gravityapi.org, which was registered just days before the attack and controlled by the attacker.

The compromised plugin sent detailed site and server information to the attacker’s server and enabled remote code execution on the infected sites. In the context of a WordPress plugin, a remote code execution (RCE) vulnerability occurs when an attacker can run malicious code on a targeted website from a remote location.

Patchstack explained the extent of the vulnerability:

“…it can perform multiple processes:

  • Upload an arbitrary file to the server.
  • List all of the user accounts on the WordPress site (ID, username, email, display name).
  • Delete any user accounts on the WordPress site.
  • Perform arbitrary file and directory listings on the WordPress server.”

That last one means that the attacker can view any file, regardless of permissions, which would include the wp-config.php file which contains database credentials.

Gravity Forms Responds

RocketGenius, the publishers of Gravity Forms, took immediate action and uploaded a fixed version of the plugin right away, on the very same day. The domain name registrar, Namecheap, suspended the rogue typosquatted domain which effectively blocked any compromised websites from contacting the attackers.

Gravity Forms has released an update to the plugin, version 2.9.13. Users may want to consider updating to the very latest version.

Read more at Patchstack:

Malware Found in Official Gravity Forms Plugin Indicating Supply Chain Breach

Featured Image by Shutterstock/Warm_Tail



Source link

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
Share This Article
Facebook Email Copy Link
Leave a Comment Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recipe Rating




Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe
TelegramFollow
Ad image

You Might Also Like

How to Grow Your Social Media Following From Zero
Content Marketing

How to Grow Your Social Media Following From Zero

By
Admin45
June 26, 2025
Is Google About To Bury Your Website?
Content Marketing

Is Google About To Bury Your Website?

By
Admin45
July 2, 2025
The Most Valuable, Fastest-Rising, and Strongest B2B Brands
Content Marketing

The Most Valuable, Fastest-Rising, and Strongest B2B Brands

By
Admin45
June 27, 2025
Social Media Marketing – Five Social Media Ad Trends Shaping 2025 [Infographic]
Content Marketing

Social Media Marketing – Five Social Media Ad Trends Shaping 2025 [Infographic]

By
Admin45
June 27, 2025
Why It’s Okay To Not Buy Or Obsess Over Links Anymore
Content Marketing

Why It’s Okay To Not Buy Or Obsess Over Links Anymore

By
Admin45
July 19, 2025
Do SEOs Agree On How To Use Them?
Content Marketing

Do SEOs Agree On How To Use Them?

By
Admin45
July 2, 2025

SmartBusinessTips

  • Business Tools & Apps
  • Marketing Strategies
  • Social Media
  • Tech Trends
  • Branding
  • Business
  • Crypto
  • Sales
  • About Us
  • Privacy Policy
  • Member Login
  • Contact Us
  • Business Coaching
  • Business Growth
  • Content Marketing
  • Branding

@Smartbusinesstips Copyright-2025-2027 Content.

Don't not sell my personal information
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?

Not a member? Sign Up