Lucene search

K
wpvulndbRyan DewhurstWPVDB-ID:8ACA2325-14B8-4B9D-94BD-D20B2C3B0C77
HistorySep 05, 2019 - 12:00 a.m.

WordPress 5.0-5.2.2 - Authenticated Stored XSS in Shortcode Previews

2019-09-0500:00:00
Ryan Dewhurst
wpscan.com
14

EPSS

0.032

Percentile

91.4%

According to the WordPress release notes: “Props to Zhouyuan Yang of Fortinet’s FortiGuard Labs who disclosed a vulnerability for cross-site scripting (XSS) in shortcode previews.”

EPSS

0.032

Percentile

91.4%