Unauthenticated Attackers Can Execute Code via New WordPress Core Flaw
A critical vulnerability named "wp2shell" has been discovered in WordPress core, allowing unauthenticated attackers to execute arbitrary code on affected sites. The flaw stems from improper input handling and could lead to full site compromise. Website owners are urged to update immediately to prevent exploitation.
Sources (2)
security
2 sources