Advanced Custom Fields: Extended Plugin — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
January 21, 2026
Last Seen
January 21, 2026

Advanced Custom Fields: Extended Plugin is a technology platform tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed January 21, 2026; most recent activity January 21, 2026.

Overview

Advanced Custom Fields: Extended Plugin is a WordPress extension that augments the core Advanced Custom Fields functionality with additional fields and configuration options. A critical vulnerability in this plugin has been disclosed, risking roughly 100,000 WordPress sites and underscoring the broad attack surface of the WordPress plugin ecosystem. Exploitation could lead to site compromise or unauthorized access, making timely patching essential for affected deployments.

Related Threat Clusters

Recent Intelligence Reports

  • Critical Vulnerability in Advanced Custom Fields: Extended Plugin Puts 100,000 WordPress Sites at Risk — Thecyberexpress · January 21, 2026

Related Entities

CVSS v3.1 Breakdown