The developers of Ninja Forms, a WordPress plugin with more than 1 million installations, have fixed a high severity security vulnerability that can let attackers inject malicious code and take over websites using an unpatched version of the plugin. […]
Click here for original story, Ninja Forms WordPress plugin patch prevents takeover of 1M sites
Source: Bleeping Computer