Skip to content

CISA Warns of WordPress Core SQL Injection Vulnerability Actively Exploited in the Wild

Cybersecuritynews Abinaya July 22, 2026

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning an actively exploited SQL injection vulnerability in WordPress Core that could allow attackers to compromise websites and potentially achieve remote code execution. This flaw, tracked as CVE-2026-63030, was added to CISA’s Known Exploited Vulnerabilities (KEV) catalog on July 21, 2026. This designation […]

Extracted Entities