THEMETASEC

Cybersecurity News, Aggregated

U.S. CISA adds WordPress flaw to its Known Exploited Vulnerabilities catalog

Security Affairs · 1 hour ago Vuln

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds WordPress flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a WordPress Core flaw, tracked as CVE-2026-87902 (CVSS score of 9.2), to its Known Exploited Vulnerabilities (KEV) catalog. CVE-2026-87902 allows an unauthenticated attacker to make the get_page_template() function include a readable local […]

Read full story at Security Affairs →