Attackers are exploiting a critical-severity privilege escalation vulnerability (CVE-2025-8489) in the King Addons for Elementor plugin for WordPress, which lets them obtain administrative permissions during the registration process.
Discover what's new in WordPress 6.9: collaboration notes, block visibility, new blocks, improved email handling, AI updates, and performance upgrades.