Dear Client,
We would like to inform you of a critical security vulnerability identified in the UpdraftPlus: WP Backup & Migration Plugin for WordPress.
Affected Versions: All versions up to and including v1.26.4
What Happened?
A recently disclosed vulnerability may allow unauthenticated attackers to bypass authentication and execute malicious actions remotely on affected WordPress websites.
This vulnerability could potentially allow attackers to:
- Gain unauthorized administrative access
- Upload and activate malicious plugins
- Execute remote code on the server
- Compromise website security and data
Immediate Action Required
To protect your website, we strongly recommend:
✅ Update UpdraftPlus immediately to the latest available secure version
✅ If updating is not possible, temporarily disable the plugin
✅ Perform a full malware/security scan of your website
✅ Review website activity logs for suspicious activity
If you need assistance securing or updating your website, please contact our support team.
Please treat this matter as high priority to avoid potential compromise.
Best Regards,
ResellNom Support Team
Security & Technical Department
Vineri, Iunie 12, 2026
