# Vulnérabilité dans WordPress (23 septembre 2026)

Publisher-attributed story with a reviewed brief or permitted publisher paragraph. The original publisher is responsible for the linked reporting.

- Publisher: CERT-FR / ANSSI
- Category: Vulnerabilities
- Original publication time: 2026-09-23T00:00:00Z
- First observed by NexusTechWire: 2026-10-01T20:28:40Z
- Original source: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1216/
- NexusTechWire record: https://nexustechwire.com/news/news-48d0e5f9c7d57559bb19

## The brief

CERT-FR reports that WordPress versions earlier than 7.1.2 are affected by CVE-2026-87902, a vulnerability it describes as permitting remote code execution. The September 23 notice points to WordPress's 7.1.2 release announcement and the project's GitHub security advisory for correction details. Its affected-version statement concerns WordPress itself, without naming a separate plugin or theme.

AI-assisted NexusTechWire summary, checked against the linked source on 2026-10-01T21:18:05Z. Not independent reporting.

Source license: [Etalab Open Licence v2.0](https://www.etalab.gouv.fr/wp-content/uploads/2017/04/ETALAB-Licence-Ouverte-v2.0.pdf). Source material adapted into an original NexusTechWire brief. Original source license applies. See the attributed original source for its latest revision date. Reuse does not imply publisher endorsement.

Read the full original: [CERT-FR / ANSSI](https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1216/)

This record does not reproduce the complete article or represent independent confirmation of every source claim.
