ChipokiaTech news, without the noise
← All stories

New WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to Code Execution

WordPress today released patches to fix a new set of vulnerabilities in its core software, one of which could allow a crafted web link, opened by a logged-in administrator, to install a theme from the official WordPress.org directory without anyone clicking…

Preview courtesy of The Hacker News. The full article opens on their site.

More from The Hacker News