---
title:

Critical Pre-Authentication RCE Patched in WordPress Core

date: 2026-07-18
tags: [#news, #devops ]
draft: false
---

Security researchers identified a critical vulnerability allowing anonymous remote code execution in base WordPress installations. Users must update to version 6.9.5 or 7.0.2 immediately to mitigate the threat.