VulnWatch VulnWatch
← All articles
Daily digest · Aug 8, 2026

VulnWatch Daily: Critical WP Plugin Flaw & MCP Command Injection Risks

Today's digest highlights a critical authorization bypass in a WordPress AI plugin enabling full site takeover, alongside two command injection vulnerabilities in emerging Model Context Protocol (MCP) gateways affecting Claude and local LLM memory tools.

Subscribers only

The full Daily Briefing is available to VulnWatch subscribers. Subscribe to read this digest and get tomorrow's delivered to your inbox.

See pricing