Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Automattic WordPress allows Stored XSS.This issue affects WordPress: from 6.5 through 6.5.4, from 6.4 through 6.4.4, from 6.3 through 6.3.4, from 6.2 through 6.2.5, from 6.1 through 6.1.6, from 6.0 through 6.0.8, from 5.9 through 5.9.9.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "6.7.2+dfsg1-1.1ubuntu1", "binary_name": "wordpress" }, { "binary_version": "6.7.2+dfsg1-1.1ubuntu1", "binary_name": "wordpress-l10n" }, { "binary_version": "6.7.2+dfsg1-1.1ubuntu1", "binary_name": "wordpress-theme-twentytwentyfive" }, { "binary_version": "6.7.2+dfsg1-1.1ubuntu1", "binary_name": "wordpress-theme-twentytwentyfour" }, { "binary_version": "6.7.2+dfsg1-1.1ubuntu1", "binary_name": "wordpress-theme-twentytwentythree" } ] }