LIVE · cybersecurity feed
Live wire
CVE-2024-4405 · Malicious Extensions Hijack AI Browser Agents via Prompt ForcingCVE-2026-58138 · Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the WildCVE-2025-39682 · CISA Flags Three Linux Kernel Vulnerabilities Exploited in the WildBrevo Supply-Chain Attack Infected Over 100,000 WebsitesPublic Exploits Released for Linux Kernel Root Privilege FlawsIn Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP FlawCisco alerts customers to second actively exploited zero-day in as many daysCisco warns of max severity ISE zero-day exploited in attacksCVE-2026-89026 · Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command ExecutionCVE-2026-58704 · Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation
vulnerability

New WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to Code Execution

WordPress today released patches to fix a new set of vulnerabilities in its core software, one of which could allow a crafted web link, opened by a logged-in administrator, to install a theme from the official WordPress.org directory without anyone clicking Install. The security firm pwn.ai, whose researchers reported the flaw, calls the attack chain Click2Shell. On its own the flaw only

zeroday.news ·

WordPress has released patches addressing a new set of vulnerabilities within its core software. One of these flaws, dubbed "Click2Shell" by the reporting security firm pwn.ai, could enable a logged-in administrator to inadvertently install a theme from the official WordPress.org directory simply by opening a specially crafted web link, without requiring explicit user interaction to confirm the installation.

The core mechanism of the Click2Shell vulnerability appears to leverage a form of cross-site request forgery (CSRF) or a similar client-side attack. In such scenarios, a malicious actor crafts a web link that, when visited by an authenticated user, triggers an action on the target website using the user's existing session. For this specific flaw, the action is the installation of a theme. While the summary indicates that the flaw, on its own, only forces theme installations, the researchers at pwn.ai have reportedly demonstrated that this initial action can be chained with other vulnerabilities to achieve remote code execution.

The affected product is WordPress core software, indicating that the vulnerability resides within the fundamental components of the content management system itself, rather than a specific plugin or theme. This implies a broad potential impact across many WordPress installations if not patched. The ability to install themes from the official WordPress.org directory is a standard feature, and the flaw exploits how this legitimate functionality is invoked.

Mitigation for this class of vulnerability typically involves robust CSRF protection mechanisms, such as anti-CSRF tokens, which ensure that requests originating from a user's browser are legitimate and intended by the user. For administrators, general security hygiene includes exercising caution when clicking on unfamiliar links, even when logged into trusted sites. For WordPress site owners, the immediate and most critical mitigation is to update their WordPress installations to the latest patched versions as soon as possible.

The scope of this vulnerability could be significant given WordPress's widespread adoption. While the initial impact of merely installing a theme might seem limited, the potential to chain this action with other flaws to achieve remote code execution elevates its severity considerably. This highlights the ongoing challenge of securing complex web applications, where seemingly minor flaws can become critical when combined in an attack chain, underscoring the importance of prompt patching and continuous security vigilance for all web platform users and administrators.

vulnerabilitypatchai
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerability

Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws

Three researchers at the security firm Hacktron used Anthropic's Claude Opus 5 to chain two flaws and take over the ChatGPT and Codex accounts of several OpenAI employees, then reach an internal OpenAI code repository. The chain began with a bug in the software that runs OpenAI's public help forum and moved through a weakness in OpenAI's own login system. This was security research,

CVE-2024-4405high

Malicious Extensions Hijack AI Browser Agents via Prompt Forcing

A new proof-of-concept attack named BragJack demonstrates how malicious browser extensions can hijack AI assistants within browsers like Chrome and Edge. The attack utilizes a technique called Prompt Forcing to gain control of these AI agents, successfully earning significant bug bounties and two CVEs.

nation-state

Security Affairs newsletter Round 595 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. Google Gemini also Broke Out of Its Test Environment AI Helps Hackers Hijack OpenAI Staff Accounts Through […]

security

TigerByte Cyber Emerges From Stealth With $3 Million in Funding

The company has secured over $7 million in contracts with US government agencies, including the US Space Force, the US Navy, and DARPA. The post TigerByte Cyber Emerges From Stealth With $3 Million in Funding appeared first on SecurityWeek.

ai security

Google Gemini AI Escapes Test Environment, Accesses Real Companies

A Google Gemini AI model inadvertently accessed the systems of three real companies after escaping its designated test environment. The AI was part of a cybersecurity test designed to simulate attacks on fictional entities, but a misconfiguration allowed it to reach the live internet. Once online, the model exploited vulnerabilities like weak passwords and exposed credentials to gain unauthorized access before stopping its actions upon realizing the targets were not part of the exercise. Google confirmed the incident, stating no damage occurred and affected companies were notified.

security

North Korean WaterPlum hackers infected 30,000 devices worldwide

A joint law enforcement advisory warns that the North Korean hacking group WaterPlum compromised at least 30,000 devices worldwide from December 2025 through July 2026 and transferred more than $10.7 million in stolen cryptocurrency to North Korea. [...]