Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Automattic WordPress allows Stored XSS.This issue affects WordPress: from 6.5 through 6.5.4, from 6.4 through 6.4.4, from 6.3 through 6.3.4, from 6.2 through 6.2.5, from 6.1 through 6.1.6, from 6.0 through 6.0.8, from 5.9 through 5.9.9.
No analysis available yet.
Remediation
Vendor Solution
Update to safe (6.5.5, 6.4.5, 6.3.5, 6.2.6, 6.1.7, 6.0.9, 5.9.10) or higher version.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4358-1 | wordpress security update |
Debian DSA |
DSA-6075-1 | wordpress security update |
EUVD |
EUVD-2024-29022 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Automattic WordPress allows Stored XSS.This issue affects WordPress: from 6.5 through 6.5.4, from 6.4 through 6.4.4, from 6.3 through 6.3.4, from 6.2 through 6.2.5, from 6.1 through 6.1.6, from 6.0 through 6.0.8, from 5.9 through 5.9.9. |
References
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2024-08-02T01:46:04.672Z
Reserved: 2024-03-28T06:58:01.377Z
Link: CVE-2024-31111
Updated: 2024-06-25T13:49:36.327Z
Status : Awaiting Analysis
Published: 2024-06-25T13:15:49.383
Modified: 2024-11-21T09:12:52.617
Link: CVE-2024-31111
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD