Important: Wordpress security vulnerability

Incident Report for Fasthosts

Update

We are continuing to monitor for any further issues.
Posted Jul 27, 2026 - 09:15 BST

Update

We are continuing to monitor for any further issues.
Posted Jul 23, 2026 - 23:20 BST

Update

We are continuing to monitor for any further issues.
Posted Jul 23, 2026 - 10:53 BST

Update

We are continuing to monitor for any further issues.
Posted Jul 23, 2026 - 09:50 BST

Update

We are continuing to monitor for any further issues.
Posted Jul 23, 2026 - 09:48 BST

Update

We are continuing to monitor for any further issues.
Posted Jul 21, 2026 - 13:31 BST

Update

We are continuing to monitor for any further issues.
Posted Jul 20, 2026 - 19:12 BST

Monitoring

On July 17, the "wp2shell" security vulnerability became known in the popular CMS WordPress. This vulnerability potentially allows attackers to inject malicious code into affected web spaces.

This affects WordPress installations running versions 6.8.0–6.8.5, 6.9.0–6.9.4, 7.0.0–7.0.1, or the 7.1 beta 1 pre-release. The WordPress team has released patched versions — 6.8.6, 6.9.5, 7.0.2, and 7.1 beta 2 — which resolve the vulnerability.

If you are running a self-managed WordPress installation, We strongly recommend you update to a patched version as soon as possible.

Further information regarding the security vulnerability can be found at How to Protect Your WordPress Site Against the wp2shell (CVE-2026-63030) Vulnerability
Posted Jul 20, 2026 - 18:37 BST
This incident affects: Hosting (WordPress Hosting).