Breach404
Back to Insights
Secure Software2 min readMay 15, 2026

Funnel Builder WordPress plugin bug exploited to steal credit cards

A critical vulnerability in the Funnel Builder WordPress plugin is being actively exploited by attackers to inject malicious code into WooCommerce checkout pages, allowing them to steal customer credit card information. If you use this plugin on a WordPre

Could your website be vulnerable to attacks like this?

Run a free 10-point security scan on your site — headers, SSL, DNS, and more. Results in 15 seconds.

Test Your Site Now — It's Free