Key Point: The actively exploited exploit chain “wp2shell” chains together WordPress vulnerabilities to enable unauthenticated remote code execution — upgrade to version 7.0.2 is required.
An actively exploited exploit chain called “wp2shell” combines two WordPress vulnerabilities for unauthenticated remote code execution (RCE). CISOs should immediately update WordPress installations to version 7.0.2 or higher and monitor the associated indicators.
The “wp2shell” exploit chain chains at least two vulnerabilities in WordPress together and allows attackers to execute code on WordPress sites without prior authentication. This significantly lowers the barrier to entry.
For CISOs and security teams, this means increased risk for website installations that are not patched immediately after disclosure. Persistent webshells could enable attackers to maintain long-term control over websites and, for example, distribute malware, exfiltrate user data, or compromise additional systems on the network.
WordPress operators should prioritize updating to version 7.0.2. Security teams should also monitor known indicators of compromise (IoCs) for the exploit chain to detect infected systems or suspicious activity.
Source: www.security-insider.de · Published July 29, 2026
Lumi AI News — AI-assisted curation per Article 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.