← Back to feed
general The Hacker News

New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code

The Hacker News Amazon

Updated July 18, 2026: the two flaws now carry CVE IDs, the full mechanism has been published, a persistent-object-cache condition has surfaced, and a workin...

Read the full story The Hacker News →

Related Coverage

general CISA alerts of active exploitation of three Linux kernel flaws BleepingComputer · Sep 21 general EU data regulator fines Google more than $460 million for location data violations The Record · Sep 21 general WordPress Click2Shell flaw lets hackers execute PHP on the server BleepingComputer · Sep 21