CVE-2026-17032
CRITICAL
NVD
CVSS Score
9.8
Severity
CRITICAL
Published
Aug 06, 2026
Vendor
unknown
Description
Multiple Supsystic Pro plugins were distributed with malicious code through the vendor's compromised update server, allowing unauthenticated attackers to deploy a second-stage payload that exfiltrates credentials and other sensitive data and grants full control of affected sites.