Elektrine lite

← Feed

@wpguyuk@infosec.exchange

2026-07-30 07:06 UTC

WP2Shell is being actively exploited right now. If your site runs WordPress 6.9.0–6.9.4 or 7.0.0–7.0.1, a single unauthenticated HTTP request can hand an attacker full control. No plugin, no login, no prior access needed. CVSS 9.8. Update immediately. #WordPress #WordPressSecurity #WP2Shell #CVE #SecurityHardening https://wpguy.uk/blog/wp2shell-what-wordpress-site-owners-must-do-right-now/

Replies (0)

No replies.