Skip to content

WordPress Security Update – Proactive Protection of Hosted Websites

You may have recently seen media reports regarding serious security vulnerabilities affecting WordPress websites worldwide.

Approved Systems was already monitoring this issue and took proactive action across our managed website hosting platform.

On Sunday, 19 July 2026, we detected malicious attempts targeting several WordPress websites hosted on our platform. The targeted sites were promptly isolated from the wider hosting environment while we investigated the activity and applied the required security updates.

As part of our response, we:

  • Isolated the targeted websites to protect the broader hosting platform.
  • Reviewed the relevant website and hosting activity.
  • Updated WordPress core installations to the latest security release, WordPress 7.0.2.
  • Confirmed that the security patches were properly applied.
  • Continued monitoring the platform for related or unusual activity.

The recently disclosed vulnerabilities were particularly serious because they affected WordPress itself rather than a particular plugin or theme. Attackers began attempting to exploit the vulnerabilities shortly after information about them became public.

At the time of this email, WordPress 7.0.2 is the latest security release, and the websites managed by Approved Systems have been proactively updated.

As with any major WordPress core update, some older plugins or themes may not yet be fully compatible with the latest release. Where a plugin was identified as unstable, incompatible or potentially unsafe, it may have been temporarily disabled to protect the website and hosting platform.

We ask that you please review your website, including important pages, contact forms, online bookings, shopping carts and other business-critical functions. Should you notice anything not displaying or operating as expected, please contact the Approved Systems Helpdesk so we can investigate and carry out any required remediation.

No further action is required where your website is operating normally. Should we identify anything requiring attention specifically for your website, we will contact you directly.

This incident demonstrates why active website management, monitoring and timely security patching are important. Simply having a website online is not enough—it needs to be regularly maintained and protected as new threats emerge.