wordpress: multiple vulnerabilities
| Package(s): | wordpress | CVE #(s): | CVE-2015-2213 CVE-2015-5730 CVE-2015-5731 CVE-2015-5732 CVE-2015-5733 CVE-2015-5734 | ||||||||||||||||||||||||||||
| Created: | August 7, 2015 | Updated: | August 12, 2015 | ||||||||||||||||||||||||||||
| Description: | From the Arch Linux advisory:
- CVE-2015-2213: SQL injection in comments ID. - CVE-2015-5730: Timing attack in widgets. - CVE-2015-5731: Denial of service by locking a post from being edited. - CVE-2015-5732, CVE-2015-5733 CVE-2015-5734: XSS. A remote attacker could lock a post from being edited, or compromise a site running wordpress. | ||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||