# Public WordPress 'wp2shell' Exploit Triggers Mass Scanning

Attackers are actively exploiting a public proof-of-concept for the WordPress "wp2shell" vulnerability, which allows remote code execution. The release of the exploit has led to widespread scanning and attacks on unpatched WordPress sites. This increases the risk of site compromise if administrators do not apply available security updates.

**Importance:** 3/5

## Sources

### Security
- [The Hacker News](https://thehackernews.com/2026/07/wordpress-wp2shell-exploitation-grows.html) — Tue, 21 Jul 2026 14:29:30 +0530