← Back to feed
general GBHackers

WordPress XSS2Shell Flaw Enables Attackers to Achieve Remote Code Execution

GBHackers WordPress

WordPress has patched a high-severity vulnerability, tracked as CVE-2026-64638 and nicknamed XSS2Shell, that begins as an unauthenticated cross-site scriptin...

T1190 1 IOC
Read the full story GBHackers →

Related Coverage

general US sanctions Iranian cyber actors as UK discloses power plant attack The Record · Aug 24 general SCOTUS tosses one of two injunctions against Trump USPS mail-in ballot rules Cyberscoop · Aug 24 general AWS patches flaw in 7 SDKs SC Media · Aug 24