A serious security issue has been discovered, due to a compromised CDN which is delivering malicious code to websites and applications that reference it's libraries.
More information on this issue is available here:
- https://www.sonatype.com/blog/polyfill.io-supply-chain-attack-hits-100000-websites-all-you-need-to-know
- https://sansec.io/research/polyfill-supply-chain-attack
WP NET support has conducted a through search of all servers and only a very small number of references were found. Some were false-positives, while a few were out-dated plugins which included libraries from polyfill.io.
All cases have been mitigated and we don't expect any issues for our customers.
Please do contact us directly by opening a support ticket if you have been experiencing any issues with your sites, or if you have any questions.