Modular DS A.I CyberSecurity Scoring
Modular DS
Company Information
Website:https://modulards.com/
Employees number:8
Number of followers:1,651
NAICS:5112
Industry Type:Software Development
Homepage:modulards.com
Modular DS Risk Score (AI oriented)
Between 700 and 749
Modular DSSoftware Development
Updated:
10/03/2026
10/03/2026
747/1000
Moderate
Ba
Modular DS Global Score (TPRM)
xxxx
Modular DSSoftware Development
Score locked

Modular DSModerate
Current Score
747Ba (MODERATE)
01000
1 incidents
-2 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
OCTOBER 2026
748
SEPTEMBER 2026
748
AUGUST 2026
748
JULY 2026
748
JUNE 2026
748
MAY 2026
748
APRIL 2026
748
MARCH 2026
747
FEBRUARY 2026
747
JANUARY 2026
749
Vulnerability
13 Jan 2026 • Modular DS
modulards.com: Critical WordPress Plugin Vulnerability Exploited in the Wild to Gain Instant Admin Access
Critical Privilege Escalation Flaw in Modular DS WordPress Plugin Exploited in the Wild
747
CRITICAL-2
MOD1768962709
Critical Privilege Escalation Flaw in Modular DS WordPress Plugin Exploited in the Wild
A severe unauthenticated privilege escalation vulnerability in the Modular DS WordPress plugin has been actively exploited, allowing attackers to gain instant admin access to affected sites. The flaw, tracked as CVE-2026-23550 (CVSS 10.0), impacts over 40,000 sites running versions up to 2.5.1 of the plugin.
Developed by modulards.com, Modular DS enables remote management of WordPress sites, including updates, monitoring, and backups. The vulnerability stems from a flaw in the plugin’s Laravel-like router at `/api/modular-connector/`, where certain protected routes could be accessed before authentication and token validation middleware were applied. Attackers exploited this by triggering a "direct request" mode using parameters like `origin=mo` and an arbitrary `type` value, bypassing auth checks.
Once exploited, the flaw exposed routes such as `/login/{modular_request}`, where the `AuthController` could auto-log an attacker as an admin via `getAdminUser()` if no user ID was specified. Successful attacks created backdoor admin accounts with names like "PoC Admin" and fake email addresses.
Exploitation began on January 13, 2026, around 2 AM UTC, with attackers targeting the `/api/modular-connector/login/` endpoint. Patchstack identified multiple malicious IPs involved in scans, login probes, and admin account creation, including:
- 45.11.89[.]19 (Initial scans)
- 162.158.123[.]41 (Login probes)
- 172.70.176[.]95 (Admin creation)
- 172.70.176[.]52 (Persistence attempts)
The vendor released version 2.5.2, which mitigates the issue by removing URL-based route matching, enforcing type validation, and adding a default 404 fallback. Patchstack also deployed an automated mitigation rule to block exploits. Users are advised to update immediately and review logs for indicators of compromise (IOCs), including suspicious admin accounts.
The incident highlights risks posed by publicly exposed internal routing and underscores the need for stricter request validation in web applications.
INCIDENT DETAILS -
TYPE
IMPACT
REFERENCES
DECEMBER 2025
749
NOVEMBER 2025
749
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Modular DS ??
What was Modular DS's A.I Rankiteo Cyber Score in September 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in August 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in July 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in June 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in May 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in April 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in March 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in February 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in January 2026 ??
What was Modular DS's A.I Rankiteo Cyber Score in December 2025 ??
What was Modular DS's A.I Rankiteo Cyber Score in November 2025 ??
What is the average per-incident point impact on Modular DS's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Modular DS ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Modular DS's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?