← Back to blogCybersecurity

Vulnerability in WordPress Plugin: Dangers for E-commerce Stores

By Assist2go17 May 2026

Source: Bleeping Computer

Does your online store run on WordPress and utilize the Funnel Builder plugin? If so, it is important to be alert. A severe vulnerability has recently been discovered in this popular plugin. Malicious actors are exploiting this to inject harmful software (JavaScript) onto the payment pages of e-commerce stores. This can lead to the theft of your customers' credit card details by criminals.

How does it work? Attackers cleverly leverage outdated versions of the plugin. They insert hidden code that, when a customer proceeds to checkout, intercepts the entered payment details and sends them to the hacker. This poses a direct threat to both your customers' security and the trust in your webshop.

What does this mean for your SME business? If you use the Funnel Builder plugin, it is crucial to take immediate action. Ensure that you and your website administrator update the plugin to the latest version as soon as possible. Engage the assistance of your web developer or IT partner to verify that your website is secure. Regular updates and security checks are essential to protect your business and customer data from such cyber threats. Stay vigilant and prevent unnecessary issues.

Share this article

LinkedIn Facebook https://www.assist2go.nl/en/blog/vulnerability-wordpress-plugin-ecommerce-dangers

Need help with IT?

Assist2go helps SMEs with reliable IT, hosting, and security.

Contact us

Related articles