WordPress wp2shell Exploitation Expands as Public Exploit Triggers Mass Scanning
Trendline

WordPress wp2shell Exploitation Expands as Public Exploit Triggers Mass Scanning

What's Happening? A new exploit chain, known as wp2shell, is being actively used to target WordPress sites, allowing unauthenticated remote code execution. The vulnerabilities, CVE-2026-63030 and CVE-2026-60137, have been exploited using public proof-of-concept code. Attackers have been able to exfi
AI Generated
This may include content generated using AI tools. Glance teams are making active and commercially reasonable efforts to moderate all AI generated content. Glance moderation processes are improving however our processes are carried out on a best-effort basis and may not be exhaustive in nature. Glance encourage our users to consume the content judiciously and rely on their own research for accuracy of facts. Glance maintains that all AI generated content here is for entertainment purposes only.