Security
WordPress Issues Patch for Critical Flaw That Can Enable Code Execution on Some Servers
The Hacker News·September 22, 2026·1 min read
WordPress fixed a critical flaw in its core software that lets an attacker with no account make a site load a PHP file from outside its theme folders. On some servers, this can allow running arbitrary code. The fix shipped on September 22 in WordPress 7.1.2, with patches for every supported branch back to 4.7, and WordPress is urging site owners to update.
Read at The Hacker NewsDaily crypto arcade
Read the news, then play it.
Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.
