WordPress security advisory (AV26-952)

Introduction to Malware Binary Triage (IMBT) Course

Looking to level up your skills? Get 10% off using coupon code: MWNEWS10 for any flavor.

Enroll Now and Save 10%: Coupon Code MWNEWS10

Note: Affiliate link – your enrollment helps support this platform at no extra cost to you.

  <div>
<div>
        <div><p><strong>Serial number: </strong>AV26-952<br /><strong>Date: </strong>September 23, 2026</p>

As of September 22, 2026, WordPress is affected by a vulnerability in the following product:

  • WordPress
    • Prior to 7.1.2

Open-source reporting indicates that CVE-2026-87902 is being exploited in the wild.

The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.

</div>

Article Link: WordPress security advisory (AV26-952) - Canadian Centre for Cyber Security