Mmastodon TechnologyCybersecurity first seen 5 h ago, last 5 h ago, peak #12
Exploited WordPress vulnerability affects all versions since 4.7.0
Original: 🔴 EXPLOITED WordPress core CVE-2026-87902 is being exploited to run code on sites, and it affects every release back to
A WordPress core vulnerability tracked as CVE-2026-87902 is being actively exploited to run code on websites without requiring login. The flaw reportedly affects every release going back to version 4.7.0. CISA has added it to its catalog and is requiring federal agencies to patch by September 28. Administrators are being urged to update to WordPress 7.1.2 immediately.
Why now: Active exploitation of a flaw affecting nearly all WordPress sites has prompted urgent patch warnings from security authorities.
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/128303