(opens original source in a new tab)WordPress has fixed a pre-authentication reflected cross-site scripting (XSS) flaw in its login screen that affects every version of the content management system. pwn.ai demonstrated how the flaw can be chained into PHP code execution on the server when a logged-in administrator interacts with an attacker-controlled page. Tracked as CVE-2026-64638 (CVSS score: 8.9), the
(opens original source in a new tab)© 2026 Industry Events Worldwide。保留所有权利。
一封简短的邮件。汇集塑造全球商业的展会、会议和峰会的头条新闻。没有废话,没有垃圾邮件,随时可取消订阅。