The latest vulnerability was disclosed publicly Dec 11th, and attacks against it have started. SpiderLabs has seen a large increase in the number of scanners looking to see if the plugin is configured on websites. The plugin is not widely use, most of the scan attempts are generating mostly Not Found error (404 pages plugin no found) If a site is found to be using this plugin via one of these scan attempts, the next step is the exploit. This is a classic example of what attackers could do with your website.”]
Source: https://blog.sucuri.net/2014/12/wp-symposium-zero-day-vulnerability-dangers.html