This was a Talking Web newsletter on 20 July 2026 - join the newsletter here.
Hi,
I appreciate I’m emailing on the wrong day (usually Tuesdays) but this one won’t keep…
On Friday night, a security issue was discovered with WordPress Core that can give anyone access to your whole website (in a non-technical nutshell).
So your quick to do this week, if you use WordPress, is to log in and check what version you’re on (you can see it on the dashboard).
- If you’re earlier than 6.9, you’re not effected by the issue (known as “CVE-2026-63030”)
- If you’re running 6.9.0 through to 6.9.4 (and don’t want to go into WordPress 7 for any reason), you want to upgrade to 6.9.5
- If you’re running 7.0.0 through to 7.0.1, get yourself to 7.0.2
- Affected beta versions were not fully specified for 7.1 beta… but get yourself to 7.1 Beta 2.
If you’re a client of ours, Tom either upgraded you on Saturday morning as soon as we heard about the issue, or we’ve been in touch with you to iron out any queries before we can sort your upgrades first thing Monday morning.
If you’re not on WordPress, keep yourself busy by watching the replay of my latest masterclass about how to make sure your website is ready for AI.
Have a good week,
Lisa
Lisa Freeman