Are More Than 500 Million WordPress Websites at Risk? A New Critical “wp2shell” Vulnerability Allows Complete Remote Server Compromise!

UZCERT Version 1 original current

Imported from official source

A critical new vulnerability, dubbed “wp2shell,” has been discovered in WordPress, one of the world’s most widely used content management systems (CMS). If successfully exploited, this flaw allows attackers to execute arbitrary code remotely (Remote Code Execution – RCE) on the server and gain complete control over a website without authentication and without relying on any additional plugins. …

This version

Version
1 of 1
Recorded
October 03, 2026 20:40
Change
Initial
Content hash
a219fe8655eee84e2d75b62cd036e440
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.