Lyrie
Active Exploitation
1 sources verified·1 min read
By Lyrie Threat Intelligence·7/19/2026

0day Intel: 🚨 wp2shell : pre-auth RCE in WordPress core, reproduced end-to-end.

Nested /ba

Source: X search for RCE 2026 exploit

Posted: 2026-07-19T00:27:45.000Z

Likes: 53

Full Tweet

🚨 wp2shell : pre-auth RCE in WordPress core, reproduced end-to-end.

Nested /batch/v1 "double confusion"

· (CVE-2026-63030) → WP_Query SQLi

· (CVE-2026-60137) → anonymous shell on a stock install.

A couple of prompts later:

· Opus 4.8 orchestrating, Sonnet agents https://t.co/vlwH7traXF https://t.co/l0dE9X6PGW

Source Link

https://x.com/i/status/2078637885016940831

Lyrie Verdict

Lyrie's autonomous defense layer flags this class of exposure the moment it surfaces — no signature update required.

Validated sources

  1. [1]@880863186936750082 on X