CVE-2026-63030

v celém archivu

zrušit filtry CZ · EN/orig

CVE-2026-63030

KEV ✓ EPSS 0.96 náprava do 24. 7. 2026

Hodnocení závažnosti

9.8 CVSS 3.1 WPScan CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
7.5 CVSS 3.1 CISA-ADP CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

3 karet z 7 položek

1

Upozorňujeme na řetězec kritických zranitelností „wp2shell“ ve WordPress

Upozorňujeme na dvojici zranitelností ve WordPress Core označovaných jako wp2shell (CVE-2026-63030 a CVE-2026-60137), které mohou při kombinovaném zneužití vést ke vzdálenému spuštění kódu (RCE) bez nutnosti přihlášení.

KEV ✓ EPSS 0.96 CVSS 9.0 CVE-2026-60137 CVE-2026-63030 WordPress Cisco Microsoft Progress WORDPRESS CZ US AT FR 5 zdrojů

NÚKIB · Cisco Talos · Elastic Security · CERT.at · CERT-FR – alerty

1

1

20th July – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 20th July, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Ernst & Young, a global accounting and professional services company, has disclosed a data breach involving a compromised third-party IT support platform. The exposed support tickets may have contained client documents, tax information, employee details, and other sensitive information submitted while requesting technical assistance. Jscrambler, a…

KEV ✓ EPSS 0.96 CVE-2026-15409 CVE-2026-15410 CVE-2026-56155 CVE-2026-56164 CVE-2026-60137 CVE-2026-63030 Microsoft WordPress SonicWall výroba a průmysl finance IL

Check Point Research ·