Critical Pre‑Authentication Remote Code Execution Vulnerability Discovered in WordPress Core
Security researchers have uncovered a pre‑authentication remote code execution flaw in WordPress core. The vulnerability allows attackers to execute code
Security researchers have uncovered a pre‑authentication remote code execution
flaw in WordPress core. The vulnerability allows attackers to execute code
without logging in. Details of the exploit are published on wp2shell.com. The
issue affects the core files that power all WordPress installations.
Exploitation could lead to full site compromise. WordPress maintainers have been
alerted to the problem. Users are advised to monitor updates and apply patches
promptly. The discovery highlights the need for rigorous security audits of
popular platforms.