ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
WordPress patched a pre-authenticated remote code execution flaw called Click2Shell in version 7.1.1. The chain lets attackers force-install any theme from the official catalog and run arbitrary PHP, but requires a logged-in administrator to visit a crafted URL.
Tap to vote and see what everyone thinks.
Summary by ByteBrief