WordPress 5.1–critical exploit chain that enables an unauthenticated attacker to gain remote code execution on any WordPress installation:
https://blog.ripstech.com/2019/wordpress-csrf-to-rce/
– exploit is possible due to a CSRF vulnerability in comment forms
– fixed in WordPress 5.1.1
#wordpress #rce #csrf #wordpress5 #infosec #cybersecurity #security