
WordPress 7.1.2 fixes critical template RCE vulnerability
WordPress 7.1.2 fixes a critical security vulnerability that could allow an unauthenticated attacker to make page template resolution include a chosen readable local PHP file outside active theme directories.
When relevant server and theme preconditions are met, the issue can lead to remote code execution, and WordPress recommends updating sites immediately.
No comments so far, maybe you want to be first?
Gu


