Hostaan Oy - suomalaiset Wordpress webhotellitHostaan Oy - suomalaiset Wordpress webhotellitHostaan Oy - suomalaiset Wordpress webhotellitHostaan Oy - suomalaiset Wordpress webhotellitHostaan Oy - suomalaiset Wordpress webhotellit

News:

Critical WordPress Vulnerability – Update Immediately

A critical security vulnerability has been discovered in WordPress Core that allows an attacker to execute arbitrary code on a WordPress server without any authentication. The vulnerability requires no plugins or special configuration – a plain default installation is sufficient. Active exploitation of the vulnerability has already been observed.

 

WordPress released security patches on 17 July 2026. Due to the severity of the vulnerability, WordPress.org has enabled forced automatic updates for affected versions. We nonetheless urge all of our customers to verify that the update has been applied.

 

Required actions

Even though WordPress has activated forced updates, please confirm that your installation is running one of the patched versions: 7.0.2, 6.9.5, or 6.8.6. We always recommend keeping WordPress updated to the latest available version.

 

Your WordPress version number is visible in the WordPress admin panel under Dashboard in the left-hand menu, or in Plesk under the WordPress option in the left-hand sidebar. You can also perform the update from either of these locations by following our general update guide (remember to take a backup before updating).

 

If you have a separate WordPress administrator, arrange the updates with them as needed

 

Further information and sources

Read more about the vulnerability and fixes from: