WordPress has released a security update to address a critical remote code execution (RCE) vulnerability in the open-source content management system (CMS).
The identified vulnerability, recognized as a Property-Oriented Programming (POP) chain issue, can be exploited in conjunction with another flaw, potentially enabling attackers to execute arbitrary PHP code on vulnerable websites.
Recommended Actions
The National Cyber Security Authority (NCSA) strongly recommends to system administrators to:
Follow WordPress Security updates to lower the risk of potential exploits, protect systems, and ensure their security.
Apply the required and latest security updates as soon as possible.