#core


WordPress Core “wp2shell” RCE flaws get public exploits, patch now

Jul 19, 2026 // 00:58

Public exploits have been released for the critical “wp2shell” remote code execution vulnerabilities affecting WordPress Core, making it imperative that administrators patch their sites immediately. […]

New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code

Jul 18, 2026 // 00:23

An anonymous HTTP request can run code on a WordPress site. The bug is in core, so a bare install with zero plugins is exploitable. […]

Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEV

May 23, 2026 // 10:49

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a recently patched critical security flaw impacting Drupal Core to its Known Exploited Vulnerabilities (KEV) […]

Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEV

May 23, 2026 // 10:46

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a recently patched critical security flaw impacting Drupal Core to its Known Exploited Vulnerabilities (KEV) […]

Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks

May 21, 2026 // 10:26

Drupal has released security updates for a “highly critical” security vulnerability in Drupal Core that could be exploited by attackers to achieve remote code execution, […]

Drupal to Release Urgent Core Security Updates on May 20, Sites Told to Prepare

May 19, 2026 // 13:54

Drupal has issued an alert stating that it intends to release a “core security release” for all supported branches on May 20, 2026, from 5-9 […]

Microsoft Patches Critical ASP.NET Core CVE-2026-40372 Privilege Escalation Bug

Apr 22, 2026 // 12:39

Microsoft has released out-of-band updates to address a security vulnerability in ASP.NET Core that could allow an attacker to escalate privileges. The vulnerability, tracked as […]

Cybersecurity Focus: Risking Core IT Skills?

Mar 24, 2026 // 13:03

Cybersecurity has evolved rapidly. Roles are more specific, and tools are more sophisticated. Theoretically, this should improve organizational security. However, many teams still struggle with […]