WordPress Update
3371Warning Date
Severity Level
Warning Number
Target Sector
8 September, 2019
● High
2019-406
All
Description:
WordPress has released security update to address multiple vulnerabilities in the following versions:
- WordPress versions 5.2.2 and earlier
Threats:
The vulnerabilities cause the following:
- Cross-site scripting (XSS) attack.
- Store malicious data which is displayed later to a victim visitor.
- Remote code injection.
Best practice and Recommendations:
The CERT team encourages users to review WordPress security advisory and apply the necessary updates:
https://wordpress.org/news/2019/09/wordpress-5-2-3-security-and-maintenance-release/