Security · 3h ago
WordPress plugin bugs chained for remote code execution
Two newly discovered vulnerabilities in WordPress plugins are being chained by attackers to achieve remote code execution. The flaws affect millions of websites, researchers warn. Patches are available but widespread exploitation is ongoing.
Meridian48 take
The real story is the slow patch adoption across WordPress's fragmented ecosystem, not just the bugs themselves.
Read the full reporting
Experts warn millions of WordPress websites could be at risk following reveal of worrying bugs →
TechRadar
wordpressremote-code-execution