I found a WordPress RCEs with GPT5.6 and $25
AI-powered security researchOpenAI GPT5.6 Sol UltraWordPress RCEbatch API validation bugmalicious changesetsecurity researchvulnerability discovery.
Author: infosecau
Date: 7/20/2026
Article Summary:
A security researcher used OpenAI's GPT5.6 Sol Ultra to discover a pre-authentication RCE in WordPress by adapting a prompt from OpenAI, and then used the same model to escalate the vulnerability to RCE. The researcher found a bug in the batch API validation process, and then used the model to craft a payload that exploited the bug and executed a malicious changeset.