Critical Breeze Cache Plugin Flaw Actively Exploited for Arbitrary File Uploads
Attackers are actively exploiting CVE-2026-3844, a critical 9.8-severity vulnerability in the Breeze Cache WordPress plugin, enabling unauthenticated file uploads and potential remote code execution across hundreds of thousands of sites.