Site icon API Security Blog

WordPress 4.2.x < 4.2.38 Multiple Vulnerabilities

According to its self-reported version number, the detected WordPress application is affected by multiple vulnerabilities : A Cross-Site Scripting (XSS) vulnerability affecting the HTML API. A Cross-Site Scripting (XSS) vulnerability affecting the Template Part block. A path traversal issue affecting sites hosted on Windows. Note that the scanner has not tested for these issues but has instead relied only on the application's self-reported version…Read More

Exit mobile version