Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

WordPress

20 articles

Infosecurity Magazine general WordPress Aug 10

WordPress Plugins Compromised Without a Single File Change

Poisoned JSON feed let attackers backdoor WordPress sites without changing any plugin files

Infosecurity Magazine → Details

SC Media general WordPress Aug 10

WordPress 'XSS2Shell' flaw allows admin takeover and remote code execution

The XSS2Shell flaw begins with a specially crafted username that bypasses WordPress's initial HTML tag sanitization.

T1190

SC Media → Details

GBHackers general WordPress Aug 8

WordPress XSS2Shell Flaw Enables Attackers to Achieve Remote Code Execution

WordPress has patched a high-severity vulnerability, tracked as CVE-2026-64638 and nicknamed XSS2Shell, that begins as an unauthenticated cross-site scriptin...

T1190 1 IOC

GBHackers → Details

Security Affairs general WordPress Aug 7

WordPress XSS2Shell Flaw Turns Simple Login Bug Into Full Server Takeover

WordPress XSS2Shell flaw enables admin takeover and remote code execution. Users should update to patched versions.

T1190

Security Affairs → Details

HackRead general WordPress Jul 31

Wordfence Finds Critical Backdoor in ARVE WordPress Plugin

A backdoored ARVE WordPress Plugin release could grant attackers administrator access with one token, but WordPress.org blocked automatic distribution to Wor...

1 IOC

HackRead → Details

Wordfence Blog vendor WordPress Jul 29

WP2Shell WordPress Exploit Technical Analysis and Real Attack Data

On July 17th, 2026, the WordPress Security Team released updates to WordPress core addressing a critical vulnerability chain that can be leveraged by unauthe...

Wordfence Blog → Details

Elastic Security Labs research WordPress Jul 23

wp2shell hits WordPress: detecting pre-auth RCE from plugin drop to command execution

We ran the wp2shell WordPress RCE chain end-to-end with Elastic Defend. Detection rule walkthrough, IOCs, and hunt guidance.

Elastic Security Labs → Details

CISA Advisories advisories WordPress Jul 21

CISA Adds Four Known Exploited Vulnerabilities to Catalog

CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

4 IOCs

CISA Advisories → Details

Wordfence Blog vendor WordPress Jul 20

wp2shell Aftermath: The First Critical Unauthenticated WordPress Core RCE in Nearly a Decade

wp2shell is a critical unauthenticated RCE chain in WordPress Core, patched July 17, 2026. See who's affected, the exploitation timeline, and what to do now.

Wordfence Blog → Details

SANS ISC advisories WordPress Jul 20

WordPress Exploitation Underway (CVE-2026-63030), (Mon, Jul 20th)

Last week, Searchlight Cyber released details about a vulnerability they are calling "wp2shell". The vulnerability was initially announced without a CVE number.

T1190 1 IOC

SANS ISC → Details

Infosecurity Magazine general WordPress Jul 20

Researchers Build WordPress Exploit Using OpenAI's GPT

A researcher who discovered a critical vulnerability in WordPress has used OpenAI’s latest model to develop an exploit chain

Infosecurity Magazine → Details

Tenable Blog vendor WordPress Jul 20

wp2shell (CVE-2026-63030, CVE-2026-60137): Frequently asked questions about remote code execution chain in WordPress Core

An unauthenticated attacker can chain two WordPress Core vulnerabilities, CVE-2026-63030 and CVE-2026-60137, to achieve remote code execution against affecte...

T1190 2 IOCs

Tenable Blog → Details

CSO Online enterprise WordPress Jul 20

Patch now: WordPress REST API bug allows remote code execution

Organizations running recent versions of WordPress are being asked to patch a newly detailed pre-authentication remote code execution (RCE) vulnerability aff...

T1190

CSO Online → Details

Wordfence Blog vendor WordPress Jul 17

PSA: WordPress Core Patched Unauthenticated Remote Code Execution Vulnerability Chain

On July 17, 2026, the WordPress Security Team released updates to WordPress core addressing two security vulnerabilities. The first is an unauthenticated SQL...

T1190 2 IOCs

Wordfence Blog → Details

Exploit Database advisories WordPress Jul 8

[webapps] Atarim WordPress Plugin 4.2.2 - Sensitive Information Exposure

Atarim WordPress Plugin 4.2.

Exploit Database → Details

Exploit Database advisories WordPress Jul 7

[webapps] WordPress Bricks Builder Theme - RCE

WordPress Bricks Builder Theme - RCE

Exploit Database → Details

Wordfence Blog vendor WordPress Jun 18

Critical Unauthenticated Arbitrary File Deletion Vulnerability Patched in Avada Builder WordPress Plugin

On May 13th, 2026, we received a submission for a critical Unauthenticated Arbitrary File Deletion vulnerability in Avada Builder, a premium WordPress plugin...

T1190

Wordfence Blog → Details

Wordfence Blog vendor WordPress Jun 17

Attackers Actively Exploiting Sensitive Information Exposure Vulnerability in Gravity SMTP Plugin

On March 30th, 2026, we publicly disclosed a Sensitive Information Exposure vulnerability in Gravity SMTP, a WordPress plugin with an estimated 100,000 activ...

Wordfence Blog → Details

Infosecurity Magazine general WordPress Jun 15

Attackers Hijack Popular WordPress Plugins to Deploy Backdoors

Tampered OptinMonster and sister plugins plant hidden backdoors on 1.

Infosecurity Magazine → Details

Exploit Database advisories WordPress Jun 5

[webapps] WordPress Contest Gallery 28.1.4 - Unauthenticated Blind SQL Injection

WordPress Contest Gallery 28.1.

Exploit Database → Details

«Previous page 1 2 3 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA