Smart Business Tips
Sign In
  • Home
  • Business
    • Business Coaching
    • Business Growth
    • Business Tools & Apps
  • Entrepreneurship
    • Entrepreneurs
    • Crypto
    • Innovation
    • Investing
    • Leadership
    • Productivity
  • Contact US
    • Blog
  • Branding
    • Content Marketing
    • Digital Marketing
    • E-commerce
    • Marketing Strategies
    • Personal Finance
  • Sales
    • Small Business Tips
    • Social Media
    • Startups
    • Tech Trends
    • Investing
  • Shop
Notification
Transforming Operations with CRM in Wholesale Distribution
Business Growth

Transforming Operations with CRM in Wholesale Distribution

Gut Bacteria Make Serotonin, Paving Way For New IBS Treatments
Innovation

Gut Bacteria Make Serotonin, Paving Way For New IBS Treatments

Bitcoin Bull Eyes 0K After BTC Reaches New All-Time High
Crypto

Bitcoin Bull Eyes $150K After BTC Reaches New All-Time High

Need More Confidence? Here Are 12 Bestselling Books on Confidence
Entrepreneurship

Need More Confidence? Here Are 12 Bestselling Books on Confidence

Font ResizerAa
Smart Business TipsSmart Business Tips
  • Home
  • Business
  • Entrepreneurship
  • Contact US
  • Branding
  • Sales
  • Shop
Search
  • Home
  • Business
    • Business Coaching
    • Business Growth
    • Business Tools & Apps
  • Entrepreneurship
    • Entrepreneurs
    • Crypto
    • Innovation
    • Investing
    • Leadership
    • Productivity
  • Contact US
    • Blog
  • Branding
    • Content Marketing
    • Digital Marketing
    • E-commerce
    • Marketing Strategies
    • Personal Finance
  • Sales
    • Small Business Tips
    • Social Media
    • Startups
    • Tech Trends
    • Investing
  • Shop
Sign In Sign In
Follow US
Made by ThemeRuby using the Foxiz theme. Powered by WordPress
Smart Business Tips > Blog > Content Marketing > Malware Discovered In Gravity Forms WordPress Plugin
Content Marketing

Malware Discovered In Gravity Forms WordPress Plugin

Admin45
Last updated: July 14, 2025 9:48 am
By
Admin45
3 Min Read
Malware Discovered In Gravity Forms WordPress Plugin
SHARE


Contents
Supply Chain AttackGravity Forms Responds

WordPress security company Patchstack published an advisory about a serious vulnerability in Gravity Forms caused by a supply chain attack. Gravity Forms responded immediately and released an update to fix the issue.

Supply Chain Attack

Patchstack has been monitoring an attack on a WordPress plugin in which the attackers uploaded an infected version of the plugin directly to the publisher’s repository and fetched other files from a domain name similar to the official domain. This, in turn, led to a serious compromise of websites that used that plugin.

A similar attack was observed in Gravity Forms and was immediately addressed by the publisher. Malicious code had been injected into Gravity Forms (specifically in gravityforms/common.php) by the attackers. The code caused the plugin, when installed, to make HTTP POST requests to the rogue domain gravityapi.org, which was registered just days before the attack and controlled by the attacker.

The compromised plugin sent detailed site and server information to the attacker’s server and enabled remote code execution on the infected sites. In the context of a WordPress plugin, a remote code execution (RCE) vulnerability occurs when an attacker can run malicious code on a targeted website from a remote location.

Patchstack explained the extent of the vulnerability:

“…it can perform multiple processes:

  • Upload an arbitrary file to the server.
  • List all of the user accounts on the WordPress site (ID, username, email, display name).
  • Delete any user accounts on the WordPress site.
  • Perform arbitrary file and directory listings on the WordPress server.”

That last one means that the attacker can view any file, regardless of permissions, which would include the wp-config.php file which contains database credentials.

Gravity Forms Responds

RocketGenius, the publishers of Gravity Forms, took immediate action and uploaded a fixed version of the plugin right away, on the very same day. The domain name registrar, Namecheap, suspended the rogue typosquatted domain which effectively blocked any compromised websites from contacting the attackers.

Gravity Forms has released an update to the plugin, version 2.9.13. Users may want to consider updating to the very latest version.

Read more at Patchstack:

Malware Found in Official Gravity Forms Plugin Indicating Supply Chain Breach

Featured Image by Shutterstock/Warm_Tail



Source link

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
Share This Article
Facebook Email Copy Link
Leave a Comment Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recipe Rating




Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe
TelegramFollow
Ad image

You Might Also Like

Leveraging Technical SEO To Boost Crawl Efficiency And Visibility
Content Marketing

Leveraging Technical SEO To Boost Crawl Efficiency And Visibility

By
Admin45
July 9, 2025
Five Practical Ways Leaders Can Grow Through Self-Driven Development
Content Marketing

Five Practical Ways Leaders Can Grow Through Self-Driven Development

By
Admin45
June 26, 2025
WordPress Update 6.8.2 – Ends Security Support For 0.9% of Sites
Content Marketing

WordPress Update 6.8.2 – Ends Security Support For 0.9% of Sites

By
Admin45
July 15, 2025
AI Chatbots Frequently Get Login URLs Wrong, Netcraft Warns
Content Marketing

AI Chatbots Frequently Get Login URLs Wrong, Netcraft Warns

By
Admin45
July 21, 2025
The New Role Of SEO In The Age Of AI
Content Marketing

The New Role Of SEO In The Age Of AI

By
Admin45
July 9, 2025
How To Weed Out Less Qualified Audiences From Your PPC Campaigns
Content Marketing

How To Weed Out Less Qualified Audiences From Your PPC Campaigns

By
Admin45
June 26, 2025

SmartBusinessTips

  • Business Tools & Apps
  • Marketing Strategies
  • Social Media
  • Tech Trends
  • Branding
  • Business
  • Crypto
  • Sales
  • About Us
  • Privacy Policy
  • Member Login
  • Contact Us
  • Business Coaching
  • Business Growth
  • Content Marketing
  • Branding

@Smartbusinesstips Copyright-2025-2027 Content.

Don't not sell my personal information
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?

Not a member? Sign Up