[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250053

 
 

909

 
 

195940

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2018-10102
Before WordPress 4.9.5, the version string was not escaped in the get_the_generator function, and could lead to XSS in a generator tag.

CVE-2018-10101
Before WordPress 4.9.5, the URL validator assumed URLs with the hostname localhost were on the same host as the WordPress server.

CVE-2018-10100
Before WordPress 4.9.5, the redirection URL for the login page was not validated or sanitized if forced to use HTTPS.

*OVAL
oval:org.secpod.oval:def:53320
CPE    119
cpe:/a:wordpress:wordpress:3.4.2
cpe:/a:wordpress:wordpress:3.4.1
cpe:/a:wordpress:wordpress:3.4.0
cpe:/a:wordpress:wordpress:2.6.3
...

© SecPod Technologies