What is CVE-2026-17032?
Multiple Supsystic Pro plugins were distributed with malicious code via the vendor's compromised update server. This allowed unauthenticated attackers to steal credentials and other sensitive data, gaining full control of affected websites.
Azərbaycanca: Supsystic Pro pluginlərinin bir neçəsi vendorun kompromatə olunmuş yeniləmə serveri vasitəsilə zərərli kodla yayılıb. Bu, autentifikasiya olunmamış hücumçulara saytlardan etimadnamələri çalmağa və tam nəzarəti ələ keçirməyə imkan verir.
FAQ1
How did the CVE-2026-17032 vulnerability affect Supsystic Pro plugins?
The vulnerability stemmed from the vendor's compromised update server, which led to multiple Supsystic Pro plugins being distributed with malicious code. This allowed unauthenticated attackers to steal credentials and gain full control of affected websites.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.