The vulnerability tracked as CVE-2026-63030, CVE-2026-60137 impacts versions are WordPress 6.9.x before 6.9.5, 7.0.x before 7.0.2, and 7.1.x before 7.1 beta2. It alloaws unauthenticated attacker to compromise a WordPress website
Stormhield Network Security (SNS) appliance protects you from that attack, thanks to a dedicated IPS Signature. To work efficiently, the traffic needs to be decrypted.
| ID | Name |
| http:mix:371 | Exploit attempt of wp2shell Vulnerability (CVE-2026-63030, CVE-2026-60137) |
