Skip to content

pmi

4 articles on this topic

  • wordpress
  • sicurezza

WP2Shell: the WordPress flaw that needs no login

On 17 July WordPress closed WP2Shell, a two-CVE chain giving unauthenticated code execution on a clean install, and the first attempts landed within hours. What we checked across the sites we maintain, and why patched does not mean clean.

, 3 min read

Have a project in mind?

Tell us what you need. We reply within one working day.