THREATOPS
THREAT OPSThreat News › Exploitation in the Wild of wp2shell

Exploitation in the Wild of wp2shell

lowwiz_researchPublished 2026-07-20

Wiz Research has identified exploitation of "wp2shell", a critical pre-auth RCE vulnerability chain impacting WordPress Core (CVE-2026-63030 & CVE-2026-60137). Attackers are deploying persistent webshells on vulnerable servers. Organizations should prioritize patching or applying WAF mitigations.

Indicators of compromise

Original source: https://www.wiz.io/blog/wp2shell-cve-2026-63030-cve-2026-60137