Update README.md
This commit is contained in:
@@ -2,7 +2,7 @@
|
|||||||
|
|
||||||
**Unauthenticated Remote Code Execution for WordPress Core POC (CVE-2026-63030 + CVE-2026-60137)**
|
**Unauthenticated Remote Code Execution for WordPress Core POC (CVE-2026-63030 + CVE-2026-60137)**
|
||||||
|
|
||||||
`wp2shell` is a single-file Python exploit for a critical vulnerability chain in WordPress core. It chains a REST API batch route confusion bug with an SQL injection in `WP_Query` to achieve **unauthenticated remote code execution** on vulnerable WordPress installations.
|
`wp2shell` exploit for critical vulnerability chain in WordPress core. It chains a REST API batch route confusion bug with an SQL injection in `WP_Query` to achieve **unauthenticated remote code execution** on vulnerable WordPress installations.
|
||||||
|
|
||||||
| Detail | Info |
|
| Detail | Info |
|
||||||
|--------|------|
|
|--------|------|
|
||||||
|
|||||||
Reference in New Issue
Block a user