LWN.net Logo

wordpress: cross-site scripting and request forgery

Package(s):wordpress CVE #(s):CVE-2013-0235 CVE-2013-0236 CVE-2013-0237
Created:February 10, 2013 Updated:February 13, 2013
Description: The wordpress publishing system suffers from two cross-site scripting vulnerabilities and one server-side request forgery vulnerability that might be exploitable to compromise a site. See the wordpress 3.5.1 release announcement for more information.
Alerts:
Fedora FEDORA-2013-1774 2013-02-10
Fedora FEDORA-2013-1692 2013-02-10

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds