WordPress 7.0.4 was officially released on August 12, 2026. This latest update in the WordPress 7.0 series is a security release that addresses several security issues in WordPress Core. WordPress recommends that website owners update their sites to WordPress 7.0.4 as soon as possible.

Unlike a major WordPress release, WordPress 7.0.4 does not introduce a large collection of new design or content-management features. Its primary purpose is to improve the security of websites running WordPress and protect site owners from vulnerabilities that could potentially be exploited by attackers.

For businesses, agencies, bloggers, online stores, and developers, keeping WordPress Core updated is an essential part of maintaining a secure and reliable website.

WordPress 7.0.4 Security update is now available!

WordPress 7.0.4 Security update is now available!

Download WordPress 7.0.4

What Is WordPress 7.0.4?

WordPress 7.0.4 is the latest security update for the WordPress 7.0 branch, released on August 12, 2026.

According to the official WordPress documentation, this release contains several security fixes. Because WordPress 7.0.4 is classified as a security release, WordPress recommends updating affected websites immediately.

The update can be installed directly from the WordPress administration dashboard:

Dashboard → Updates → Update Now

WordPress also provides the release through its official download and release channels.

WordPress 7.0.4 Security Fixes

The most important reason to install WordPress 7.0.4 is security.

One of the vulnerabilities addressed in this release involves an authenticated Author-level or higher user who could potentially achieve remote code execution through a malicious file upload on websites using Imagick and Ghostscript. The vulnerability was responsibly reported to the WordPress security team and has been fixed in this release.

This is particularly relevant for websites that allow multiple users to upload media or manage content.

Although an attacker would need authenticated access meeting the affected privilege requirements, vulnerabilities involving file uploads and remote code execution can have serious consequences if successfully exploited.

WordPress has also made the relevant fix available for several older supported branches, including WordPress 6.9, 6.8, 6.7, 6.6, and earlier affected versions.

If you would like assistance implementing your project or SEO tips for your website, please feel free to contact us via email: manager@webcodewp.com or contact form.
General questions and comments also welcome: