wp2shell
CVE-2026-63030 + CVE-2026-60137+poc
This vulnerability is not very easy to exploit.
Database command execution command:
(SELECT GROUP_CONCAT(SCHEMA_NAME) FROM INFORMATION_SCHEMA.SCHEMATA)
Reference: https://github.com/Icex0/wp2shell-poc
However, there is one issue: adding the account password does not succeed.