Search

Showing top 144 results for "WordPress" · from 147 indexed matches

Related topics: WordPress

Tracked topic

WordPress

Live now Critical Elementor Pro bug exposes WordPress sites to RCE attacks
Live sources: BleepingComputer
1 live sources Latest signal 1d ago See topic hub

Top stories

igorslab.de › zh

Global CMS 攻击浪潮:通过 CMS 漏洞投放 Webshell

…2 Minuten · 312 Wörter · 2,560 Zeichen 1.0× 任何只在后台红色数字最终变成两位数时才更新其 WordPress 插件的人,现在正清楚地看到了这种策略的弊端。澳大利亚网络安全中心正在警告一场大规模攻击活动,其中已知内容管理系统及其扩展中的漏洞正在被自动搜索并加以利用。该警告于 2026 年 7 月 9 日发布,被归类为“严重”,且明确不局限于政府机构或大型企业。根据澳大利亚主管机构的数据,已有众多中小型企业受到影响。该活动正在全球范围内运行,除 WordPress 扩展外,还影响…

Jul 12, 2026 · Samir Bashir

Discussions and forums

r/cybersecurity · u/sunychoudhary · Jul 20, 2026

WP2Shell WordPress Vulnerabilities Exploited in the Wild

Exploitation of the new WordPress vulnerabilities tracked as CVE-2026-60137 and CVE-2026-63030 started soon after disclosure. https://www.securityweek.com/wp2shell-wordpress-vulnerabilities-exploited-in-the-wild/ submitt…

Hacker News · u/luispa · Jun 30, 2026

Connect any self-hosted WordPress site to your AI

Connect any self-hosted WordPress site to your AI

1
r/cybersecurity · u/Altruistic_Hope_2559 · 2w ago

New WordPress Pre-Auth XSS (CVE-2026-64638) Could Lead to RCE: Have you patched your instances yet?

Hi everyone, A high-severity security issue was recently fixed in WordPress 7.0.3 (and backported to older versions). The vulnerability, tracked as CVE-2026-64638, is a pre-authentication reflected XSS flaw on the login …

r/selfhosted · u/Flashy-Highlight867 · Jul 22, 2026

PSA WordPress Core had Critical Vulnerability. Patch released on Friday. Immediately update

7.0.2 got released on Friday. Exploits are already happening. 4 of my customers websites got hacked. I was busy the last days and weren’t up to date. Good time to notice that 2 backups failed without me noticing it. Fml …

r/cybersecurity · u/Immediate-Yam-3202 · 14h ago

Building a WordPress Security Function from Scratch as the First Security Employee

I’m joining a hosting company as the first person responsible for a new website-security function. Most of the hosted websites are WordPress, and there is currently no established security process for this function. The …

To show you the most relevant results, we’ve omitted some entries very similar to those already shown. Repeat the search with the omitted results included.