Companion HTML report (zip): Download ZIP
Critical
- [11] Two new high severity WordPress vulnerabilities, patch immediately! — CVEs: CVE-2026-60137, CVE-2026-63030
<p>The 7.0.2 WordPress security release addresses one critical and one high severity security issue. The vulnerabilities reported to the WordPress security team include: CVE-2026-60137 – A facilitated SQL injection issue reported as a team by TF1T, dtro, and haongo CVE-2026-63030 – A REST API batch-route confusion and SQL injection issue leading to Remote Code Execution reported by Adam Kues at Assetnote / Searchlight Cyber Which versions of WordPress are vulnerable? WordPress 6.9 is
Leave a Reply