Back to Markets
VULNERABILITYRESOLVEDWordPressRCEPublic ExploitCMSauto-generated

Will WordPress Core 'wp2shell' RCE vulnerability lead to 100+ documented site compromises by Aug 2026?

RESOLVEDNOAug 19, 2026

[Auto-closed — deadline passed with no qualifying event] Deadline was 2026-08-18, which has passed (today is 2026-08-19). No credible evidence from CISA advisories, WordPress security disclosures, Wordfence, Bleeping Computer, or other authoritative sources documents cumulative confirmed compromises or mass exploitation campaigns tied to the wp2shell RCEs reaching or exceeding 100+ documented site compromises. Absence of qualifying event by deadline triggers automatic NO resolution.

Evidence: https://threatodds.com/markets/67d0f1db-c1c7-473e-97a3-9e3628c1158d
72%
YES
28%
NO
0 predictions
YES
NO
75%60%45%30%
30d25d20d15d10d5dnow

Market Overview

AI GENERATED

Bleeping Computer reports that critical 'wp2shell' remote code execution flaws in WordPress Core have received public exploit code, necessitating immediate patching. WordPress powers ~43% of all websites.

Primary Source

Resolution Criteria

Public disclosure from WordPress security advisories, CISA advisories, or reputable security researchers (e.g., Wordfence, Bleeping Computer) documenting cumulative confirmed compromises or mass exploitation campaigns tied to CVE-2026-xxxx wp2shell RCEs.

Market Info

ClosesAugust 18, 2026
CreatedJul 19, 2026
CategoryVulnerability
Created by@ThreatOdds
Creator accuracy0%
ResolutionCommunity vote + moderator
StatusLIVE

MARKET STATS

Total Predictions0
ClosesAugust 18, 2026
ResolutionCommunity + Moderator
CategoryVulnerability
Beta Feedback