Hackers start exploiting critical WordPress flaw for code execution
WordPress patched hours after a critical flaw, yet attackers were already exploiting it for remote code execution
Evidence dossier
Intelligence passport
Measured timeline
The coverage curve
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The brief
- Velocity & Diffusion: Coverage exploded across 6 distinct news outlets with 7 published articles, achieving a live velocity of 4.
- Primary Driver: WordPress patched hours after a critical flaw, yet attackers were already exploiting it for remote code execution
- Source Integrity: Verified strictly against primary headline reporting under zero-hallucination protocols.
The WordPress core received a patch for the newly assigned CVE‑2026‑87902 within hours of disclosure, but security researchers observed that threat actors had already begun leveraging the vulnerability to run arbitrary code on affected servers. The flaw, dubbed “Click2Shell,” enables remote code execution on some WordPress installations.
Coverage varies on the scope of the compromise. forkast.news emphasized the surprise that attackers were “already inside” before the fix, whereas other outlets provide limited data on how many sites were affected or the persistence of the breach. What remains unclear is the total number of compromised installations and whether additional, undisclosed exploits are in circulation.
Synthesized by Archynetys from the headlines below under a strict no-invention contract. ✓ fact-checked: unsupported claims removed (67% supported) Updated 2h ago.
Coverage (7)
-
CVE-2026-87902: how close is your WordPress to remote code execution?Security Affairs · 16h ago
-
WordPress Core Patched in Hours. Attackers Were Already Inside.forkast.news · 16h ago
-
WordPress Patches ‘Click2Shell’ VulnerabilitySecurityWeek · 16h ago
-
WordPress Issues Patch for Critical Flaw That Can Enable Code Execution on Some ServersThe Hacker News · 16h ago
-
Hackers start exploiting critical WordPress flaw for code executionbleepingcomputer.com · 16h ago
-
WordPress 7.1.2 fixes critical unauthenticated path traversal vulnerability (CVE-2026-87902)Help Net Security · 1d ago
-
Attackers Exploit WordPress CVE-2026-87902 Within Hours of DisclosureThe Hacker News · 1d ago
Quick answers
What does CVE‑2026‑87902 refer to?
It is the identifier for a critical WordPress core vulnerability, nicknamed “Click2Shell,” that can allow remote code execution on some servers.
How quickly did WordPress address the flaw?
WordPress released a patch within hours of the vulnerability being reported, according to forkast.news and SecurityWeek.
What aspects of the incident are still unknown?
The extent of site compromise, the number of servers affected, and whether further exploit variants exist have not been disclosed.
How do you expect this trend to evolve over the next 24 hours?
Cast your vote to register reader intelligence on the velocity and trajectory of this coverage.
Topics
Related trends
OpenAI gives AI cyber defence tools to Ukraine
OpenAI gives AI cyber defense tools to Ukraine amid rising Russian cyberattacks
Massive AI-Fueled Hack Hit 100 Companies In Days
100 companies hacked in days by AI agents.
ShinyHunters hackers say they breached FBI
A hacktivist group says it stole data on thousands of FBI employees, contradicting the expectation that the agency’s own security is unbreachable.
Your AI doomsday questions answered: ‘What, if anything, can people like me do about it?’
6 news sources are covering this Business story right now — Archynetys is tracking how fast it spreads.
That security patch date on your Android phone is no longer the full story
4 news sources are covering this Technology story right now — Archynetys is tracking how fast it spreads.
Google's Gemini becomes latest AI model to break out and hack computer systems
10 news sources are covering this Business story right now — Archynetys is tracking how fast it spreads.
Open prediction lab
Can you beat the machine?
Pick tomorrow's top trend, then compare your result with Archynetys's self-graded forecast.
📬 The daily trend digest
The world's top trends, once a day. No spam, one-click unsubscribe.