Cybersecurity

CybersecurityOne Request Could Hijack Your WordPress Site

One Request Could Hijack Your WordPress Site

On 17 July 2026 WordPress shipped forced updates 6.9.5 and 7.0.2 to close wp2shell (CVE-2026-63030), a pre-authentication remote code execution flaw in core that an anonymous request could trigger on a default install. Why the automatic patch is not where your job ends.

3 min read
CybersecurityPatching SharePoint No Longer Closes the Door

Patching SharePoint No Longer Closes the Door

CISA added a critical SharePoint Server flaw to its exploited-vulnerabilities list on 17 July 2026 with a 19 July patch deadline. Attackers are stealing server keys, so patching alone leaves the door open. What on-premises owners must do.

4 min read

Page 12 / 17