Evidence record 12191 · automatically gathered

'WP2Shell' Opens Millions of WordPress Sites to Remote Takeover

Barely three days after disclosure, attackers are widely chaining together CVE-2026-60137 and CVE-2026-63030 to lob exploit attempts against one of the largest attack surfaces on the Internet.

Record details

Published: 20 July 2026
Source: Dark Reading (AI security)
Category: News
Topics: Transparency
Retrieved: 21 July 2026

source-onlyevidence status

These records share source-supplied organisations, an exact publisher byline, automatic topics or regions. The reason is shown on every link; related does not mean supporting, agreeing with or verifying this record.

How to cite this record

ethics.ai (20 July 2026), “'WP2Shell' Opens Millions of WordPress Sites to Remote Takeover,” evidence record 12191, https://ethics.ai/record/12191 (originally published by Dark Reading (AI security)).

JSON

Use and limitations

This page is a stable index and citation surface for a source record. ethics.ai did not author the underlying report and has not independently verified every claim. Automatic topics may be imperfect. For consequential use, quote and cite the original publisher.