← Back to Cybersecurity | ← All Articles
Cybersecurity

Critical Software Vulnerabilities Being Actively Attacked

Monday, July 20, 2026 DrakX Intelligence · Analyzed & Published Monday, July 20, 2026
Multiple serious security flaws in popular software platforms are being actively exploited by hackers, with cybersecurity officials tracking the attacks. Companies using SharePoint and WordPress are urged to update their systems immediately.
⬡ 2 pillars detected
CybersecurityGeopolitics & Global Events

Software companies and computer security experts are warning about serious vulnerabilities being actively exploited by hackers right now. These security flaws affect millions of computers and websites worldwide, making them a major concern for businesses and individuals.

One of the most critical problems involves a SharePoint vulnerability labeled CVE-2026-58644. SharePoint is software that many companies use to store and share documents online. This particular vulnerability is especially dangerous because it allows remote code execution, which means hackers can take control of computers from far away without needing physical access to them. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added this flaw to its official list of exploited vulnerabilities, signaling to all organizations that they need to take action immediately.

The concerning part about this SharePoint vulnerability is that hackers began using it to attack systems very quickly after the company disclosed the problem. This means defenders had little time to prepare before criminals started exploiting it. Security experts emphasized that organizations needed to patch their systems urgently to prevent break-ins.

The dangers extend beyond SharePoint. WordPress, which powers roughly one-third of all websites on the internet, is also facing active exploitation. Multiple vulnerabilities in WordPress plugins called WP2Shell are being used in attacks right now. These flaws give attackers ways to gain unauthorized access to WordPress websites and potentially steal information or take control of the sites.

What makes these situations particularly serious is the pattern of rapid exploitation. Rather than waiting weeks or months before attempting to use newly discovered flaws, attackers are moving extremely fast. This puts organizations in a difficult position because they must update their software quickly, even if they haven't fully tested whether the updates will cause problems with their existing systems.

Security experts recommend that anyone using SharePoint, WordPress, or related software take immediate steps to update to the latest versions. Organizations should also monitor their systems closely for signs of unauthorized access. Businesses relying on these platforms for critical work should treat these updates as emergency priorities rather than routine maintenance.

For most people, the best protection is making sure their software stays current. Companies should enable automatic updates when possible and regularly check for security patches from software makers. By staying ahead of these vulnerabilities, users can significantly reduce their risk of becoming victims of these active cyberattacks.


vulnerability SharePoint WordPress CVE-2026-58644 CISA software-security cyberattacks
// INTELLIGENCE SOURCES
undefined·undefined·undefined
RELATED INTELLIGENCE
Cybersecurity
Microsoft Patches Record Security Flaws as Hackers Actively Exploit Vulnerabilities
Cybersecurity
Microsoft Releases Record Security Patches to Fix Hundreds of Flaws
Cybersecurity
Microsoft Releases Record Security Patches as Hackers Attack Multiple Vulnerabilities