Internet·2 min read·hard
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code - The Hacker News
T
The Hacker News
✦AI Summary
A critical vulnerability in the WordPress core has been identified, allowing unauthenticated attackers to execute arbitrary code. A proof-of-concept is now publicly available, increasing the risk for site administrators.
Updated July 18, 2026: the two flaws now carry CVE IDs, the full mechanism has been published, a persistent-object-cache condition has surfaced, and a working proof-of-concept is public. The story be…
technology
✦
Get the full story
Sign up for Headlinne to unlock AI insights, political bias analysis, and your personalized news feed.
Create free accountAlready have an account? Sign in