WordPress Click2Shell flaw lets hackers execute PHP on the server | HappeningNow.news

Cybersecurity

WordPress Click2Shell flaw lets hackers execute PHP on the server

Technical details and a proof-of-concept exploit have been published for a new WordPress cross-site request forgery (CSRF) vulnerability dubbed 'Click2Shell' that affects the platform’s Core component.

Source Summary Published 4h 46m ago Brief Under 1 min brief
Story intelligence
Coverage Single outlet Single-outlet story
Views New Be the first to read
Brief read Under 1 min brief 48 words

Summary

Technical details and a proof-of-concept exploit have been published for a new WordPress cross-site request forgery (CSRF) vulnerability dubbed 'Click2Shell' that affects the platform’s Core component. The security problem does not have an official identifier but was addressed last week with the release of WordPress version 7.1.1 .

Read original at Bleepingcomputer

Coverage Context

Part of Wordpress coverage 63 tracked stories

More from Cybersecurity

Continue reading recent Cybersecurity coverage

Support HappeningNow

Independent AI-powered news analysis is reader-supported. Your contribution helps cover infrastructure, summaries, and continued platform development.

Support HappeningNow

Report an issue with this page