From en.secnews.gr
![Tatsu Builder plugin](https://cdn.secnews.gr/xldIHLA.SaZv~42228/w:auto/h:auto/q:mauto/process:403357/id:4f131b35af1deac0195dc66f6a5e4674/https://www.secnews.gr/Tatsu-builder-plugin.jpg)
Cybercriminals are exploiting one vulnerability that allows execute code remotely. Vulnerability is known as CVE-2021-25094 and is located at Tatsu Builder plugin for WordPress, which is installed in thousands websites.
It is estimated that a large number are running a vulnerable version of the plugin, although there has been a patch since early April.