Mmastodon TechnologyCybersecurity first seen 1 d ago, last 1 d ago, peak #10
Zella Theme WordPress vulnerability allows unauthenticated font upload
Original: π¨ EUVD-2026-89637 π Score: n/a π¦ Product: Zella Theme π’ Vendor: Unknown π Updated: 2026-09-30 π The Zella Theme WordPres
A newly logged vulnerability, EUVD-2026-89637, affects the Zella Theme for WordPress in versions before 2.6.3. The theme fails to perform capability or nonce checks on one of its font upload actions, which is available to unauthenticated users, potentially allowing attackers to upload files without an account. Site administrators running the theme are advised to update to version 2.6.3 or later.
Why now: Security trackers and bot feeds flagged a new vulnerability in a widely used WordPress theme, prompting administrators to check their sites.
Zella ThemeWordPressEUVD-2026-89637
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/456427