CVE-2006-0733

Source
https://cve.org/CVERecord?id=CVE-2006-0733
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2006-0733.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2006-0733
Downstream
Published
2006-02-16T11:02:00Z
Modified
2026-04-10T03:38:22.253041Z
Summary
[none]
Details

Cross-site scripting (XSS) vulnerability in WordPress 2.0.0 allows remote attackers to inject arbitrary web script or HTML via scriptable attributes such as (1) onfocus and (2) onblur in the "author's website" field. NOTE: followup comments to the researcher's web log suggest that this issue is only exploitable by the same user who injects the XSS, so this might not be a vulnerability

Database specific
{
    "isDisputed": true
}
References

Affected packages