Netskope Threat Labs

INDICATOR-COMPROMISE Elementor Pro webshell execution attempt via forms upload directory

IPS-NPA

1 SID: 306032

Detects indicators of compromise consistent with an active intrusion using Elementor Pro webshell execution attempt via forms upload directory. The underlying flaw carries the identifier CVE-2026-32475.