WordPress 6.4.2 Patches Remote Code Execution Vulnerability
WordPress 6.4.2 Patches Remote Code Execution Vulnerability
December 31, 2023

WordPress 6.4.2 patches a flaw that could be chained with another vulnerability to execute arbitrary code.
By
WordPress this week released a security update for the popular content management system (CMS) to address a remote code execution (RCE) vulnerability.
The flaw addressed in the open source CMS is a property oriented programming (POP) chain issue introduced in WordPress core 6.4. It can be combined with a different object injection flaw, allowing attackers to execute PHP code on vulnerable websites.
Read the full article @SecurityWeek News

