Update README.md

This commit is contained in:
2026-07-19 00:33:47 +00:00
parent c7a83d9b7d
commit 76345d4655
+1 -1
View File
@@ -2,7 +2,7 @@
**Unauthenticated Remote Code Execution for WordPress Core POC (CVE-2026-63030 + CVE-2026-60137)** **Unauthenticated Remote Code Execution for WordPress Core POC (CVE-2026-63030 + CVE-2026-60137)**
`wp2shell` is a single-file Python exploit for a critical vulnerability chain in WordPress core. It chains a REST API batch route confusion bug with an SQL injection in `WP_Query` to achieve **unauthenticated remote code execution** on vulnerable WordPress installations. `wp2shell` exploit for critical vulnerability chain in WordPress core. It chains a REST API batch route confusion bug with an SQL injection in `WP_Query` to achieve **unauthenticated remote code execution** on vulnerable WordPress installations.
| Detail | Info | | Detail | Info |
|--------|------| |--------|------|