Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

WordPress

19 articles

HackRead general WordPress 9h ago

Wordfence Finds Critical Backdoor in ARVE WordPress Plugin

A backdoored ARVE WordPress Plugin release could grant attackers administrator access with one token, but WordPress.org blocked automatic distribution to Wor...

1 IOC

HackRead → Details

Wordfence Blog vendor WordPress 2d ago

WP2Shell WordPress Exploit Technical Analysis and Real Attack Data

On July 17th, 2026, the WordPress Security Team released updates to WordPress core addressing a critical vulnerability chain that can be leveraged by unauthe...

Wordfence Blog → Details

Elastic Security Labs research WordPress Jul 23

wp2shell hits WordPress: detecting pre-auth RCE from plugin drop to command execution

We ran the wp2shell WordPress RCE chain end-to-end with Elastic Defend. Detection rule walkthrough, IOCs, and hunt guidance.

Elastic Security Labs → Details

CISA Advisories advisories WordPress Jul 21

CISA Adds Four Known Exploited Vulnerabilities to Catalog

CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

4 IOCs

CISA Advisories → Details

Wordfence Blog vendor WordPress Jul 20

wp2shell Aftermath: The First Critical Unauthenticated WordPress Core RCE in Nearly a Decade

wp2shell is a critical unauthenticated RCE chain in WordPress Core, patched July 17, 2026. See who's affected, the exploitation timeline, and what to do now.

Wordfence Blog → Details

SANS ISC advisories WordPress Jul 20

WordPress Exploitation Underway (CVE-2026-63030), (Mon, Jul 20th)

Last week, Searchlight Cyber released details about a vulnerability they are calling "wp2shell". The vulnerability was initially announced without a CVE number.

T1190 1 IOC

SANS ISC → Details

Infosecurity Magazine general WordPress Jul 20

Researchers Build WordPress Exploit Using OpenAI's GPT

A researcher who discovered a critical vulnerability in WordPress has used OpenAI’s latest model to develop an exploit chain

Infosecurity Magazine → Details

Tenable Blog vendor WordPress Jul 20

wp2shell (CVE-2026-63030, CVE-2026-60137): Frequently asked questions about remote code execution chain in WordPress Core

An unauthenticated attacker can chain two WordPress Core vulnerabilities, CVE-2026-63030 and CVE-2026-60137, to achieve remote code execution against affecte...

T1190 2 IOCs

Tenable Blog → Details

CSO Online enterprise WordPress Jul 20

Patch now: WordPress REST API bug allows remote code execution

Organizations running recent versions of WordPress are being asked to patch a newly detailed pre-authentication remote code execution (RCE) vulnerability aff...

T1190

CSO Online → Details

Wordfence Blog vendor WordPress Jul 17

PSA: WordPress Core Patched Unauthenticated Remote Code Execution Vulnerability Chain

On July 17, 2026, the WordPress Security Team released updates to WordPress core addressing two security vulnerabilities. The first is an unauthenticated SQL...

T1190 2 IOCs

Wordfence Blog → Details

Exploit Database advisories WordPress Jul 8

[webapps] Atarim WordPress Plugin 4.2.2 - Sensitive Information Exposure

Atarim WordPress Plugin 4.2.

Exploit Database → Details

Exploit Database advisories WordPress Jul 7

[webapps] WordPress Bricks Builder Theme - RCE

WordPress Bricks Builder Theme - RCE

Exploit Database → Details

Wordfence Blog vendor WordPress Jun 18

Critical Unauthenticated Arbitrary File Deletion Vulnerability Patched in Avada Builder WordPress Plugin

On May 13th, 2026, we received a submission for a critical Unauthenticated Arbitrary File Deletion vulnerability in Avada Builder, a premium WordPress plugin...

T1190

Wordfence Blog → Details

Wordfence Blog vendor WordPress Jun 17

Attackers Actively Exploiting Sensitive Information Exposure Vulnerability in Gravity SMTP Plugin

On March 30th, 2026, we publicly disclosed a Sensitive Information Exposure vulnerability in Gravity SMTP, a WordPress plugin with an estimated 100,000 activ...

Wordfence Blog → Details

Infosecurity Magazine general WordPress Jun 15

Attackers Hijack Popular WordPress Plugins to Deploy Backdoors

Tampered OptinMonster and sister plugins plant hidden backdoors on 1.

Infosecurity Magazine → Details

Exploit Database advisories WordPress Jun 5

[webapps] WordPress Contest Gallery 28.1.4 - Unauthenticated Blind SQL Injection

WordPress Contest Gallery 28.1.

Exploit Database → Details

Infosecurity Magazine general WordPress Jun 4

Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites

Critical Everest Forms Pro RCE flaw exploited to create rogue WordPress admin accounts

T1190

Infosecurity Magazine → Details

Exploit Database advisories WordPress Jun 1

[webapps] WordPress OrderConvo 14 - Path Traversal

WordPress OrderConvo 14 - Path Traversal

Exploit Database → Details

Exploit Database advisories WordPress May 29

[webapps] Quick Playground for WordPress 1.3.1 - Unauthenticated Remote Code Execution

Quick Playground for WordPress 1.3.

T1190

Exploit Database → Details

FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA