โ† Back to Dashboard

CVE-2026-60137

CRITICAL CISA
CVSS Score
N/A
Severity
CRITICAL
Source
CISA
Published
Jul 21, 2026
Description

WordPress โ€” Core: WordPress Core contains a SQL injection vulnerability when a plugin or theme passes untrusted input to the parameter. This vulnerability can be chained with CVE-2026-63030 to allow an unauthenticated attacker to gain remote code execution on default WordPress installations.

View Full Details โ† Back