A new supply chain attack involving the ShapedPlugin is threatening WordPress sites, as discovered by security researchers at Wordfence. This serious vulnerability could compromise the security of numerous websites. Related issues include other supply chain attacks affecting popular tools and plugins.