← Back to feed
Vulnerabilities & PatchesEmerging1 sourceSep 21, 2026 · 18:23via BleepingComputer

WordPress Click2Shell flaw lets hackers execute PHP on the server

Brief

Technical details and a proof-of-concept exploit have been published for a new WordPress cross-site request forgery (CSRF) vulnerability dubbed 'Click2Shell' that affects the platform's Core component. [... ]

Read more on BleepingComputer→