Use after wp2shell-audit has confirmed a Pantheon WordPress site is compromised by the wp2shell vulnerability chain (CVE-2026-60137 / CVE-2026-63030) — guides remediation (upstream update on a multidev, fake-admin removal, optional password reset, salt rotation, DB cleanup) via scripts/wp2shell-cleanup.sh, in order, with a human decision point before every destructive or ambiguous action.
2026-07-24