System running
Last check: 2026-09-29 00:26:08 | Auto-updates every hour
754 PoCs
CybersecPlayground | The ultimate platform for cybersecurity learning & Bug Bounty Resources

CVE-CVE-2026-63030

Severity
CRITICAL
CVSS Score
9.8
Description

WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion issue which, combined with the author__not_in WP_Query SQL Injection (CVE-2026-60137), could allow an attacker to perform SQL Injection and achieve Remote Code Execution....

PoCs for CVE-CVE-2026-63030

wp2shell-PoC
RCE Python 39
arvindear 2026-09-18
wp2shell-Exploit-Waf-Bypass
RCE Go 1
M4xSec 2026-08-08
WP2Shell
General Python 0
g0d150ne 2026-08-09
POC-CVE-2026-63030-CVE-2026-60137-
General 0
TranDongA3 2026-08-19
CVE-2026-63030-poc
General Python 0
TomorrowX6 2026-07-19
CVE-2026-63030
RCE Python 0
fl0ydsec 2026-09-24
CVE-2026-63030-60137-wp2shell-lab
SQL Injection Python 0
jed-parsec 2026-09-27
Master Cybersecurity | Join CybersecPlayground for Cybersecurity Learning & Bug Bounty Resources