CMS
WordPress Core 7.0.4
WordPress 7.0.4 is an urgent security release addressing an authenticated remote code execution vulnerability. The issue could allow users with Author-level privileges or higher to achieve remote code execution through a malicious file upload on WordPress sites using Imagick and Ghostscript. WordPress recommends that all affected sites update immediately.
WordPress Core 7.0.3
WordPress 7.0.3 is a security-focused maintenance release for the WordPress 7.0 branch. The update addresses multiple security vulnerabilities in WordPress Core and is recommended for prompt deployment on affected websites. This release follows WordPress 7.0.2, which was itself an urgent security update.
WordPress Core 7.0.2
WordPress Core 7.0.2 is an important security release that fixes two high-impact vulnerabilities, including a critical Remote Code Execution (RCE) issue affecting the REST API and a SQL injection vulnerability. Automatic security updates have been enabled for affected installations, and all users are strongly encouraged to upgrade immediately.
WordPress Core 7.0.1
WordPress 7.0.1 is a short-cycle maintenance release that fixes 31 bugs across WordPress Core and the Block Editor. The update improves stability, editor reliability, media handling, and the WordPress admin experience without introducing new features.