New WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to… | HappeningNow.news

Cybersecurity · 1 views

New WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to Code Execution

WordPress today released patches to fix a new set of vulnerabilities in its core software, one of which could allow a crafted web link, opened by a logged-in administrator, to install a theme from the official WordPress.org directory…

Source Summary Published 2h 09m ago Brief Under 1 min brief
Story intelligence
Coverage Single outlet Single-outlet story
Views 1 Community interest
Brief read Under 1 min brief 42 words

Summary

WordPress today released patches to fix a new set of vulnerabilities in its core software, one of which could allow a crafted web link, opened by a logged-in administrator, to install a theme from the official WordPress.org directory without anyone clicking Install.

Read original at The Hackernews

Coverage Context

Part of Wordpress coverage 62 tracked stories

More from Cybersecurity

Continue reading recent Cybersecurity coverage

Support HappeningNow

Independent AI-powered news analysis is reader-supported. Your contribution helps cover infrastructure, summaries, and continued platform development.

Support HappeningNow

Report an issue with this page