WordPress 3.9, 3.9.1, 3.9.2, 4.0 - XSS in Media Playlists

Affects WordPresses

fixed in version 4.0.1
fixed in version 4.0.1
fixed in version 4.0.1
fixed in version 4.0.1

References

CVE 2014-9032
URL https://core.trac.wordpress.org/changeset/30422

Classification

Type XSS
OWASP Top 10 A7: Cross-Site Scripting (XSS)
CWE CWE-79

Miscellaneous

Submitter ethicalhack3r
Submitter Website https://dewhurstsecurity.com/
Submitter Twitter ethicalhack3r
Views 9018
Verified No
WPVDB ID 7697

Timeline

Publicly Published 2014-11-30 (almost 5 years ago)
Added 2014-11-30 (almost 5 years ago)
Last Updated 2019-10-21 (27 days ago)

Our Other Services

Online WordPress Vulnerability Scanner WPScan WordPress Security Plugin