THREAT OPS › Threat News › Exploitation in the Wild of wp2shell
Exploitation in the Wild of wp2shell
Wiz Research has identified exploitation of "wp2shell", a critical pre-auth RCE vulnerability chain impacting WordPress Core (CVE-2026-63030 & CVE-2026-60137). Attackers are deploying persistent webshells on vulnerable servers. Organizations should prioritize patching or applying WAF mitigations.
Indicators of compromise
- CVE-2026-63030cve
- CVE-2026-60137cve
Original source: https://www.wiz.io/blog/wp2shell-cve-2026-63030-cve-2026-60137