WordPress Update
3086Warning Date
Severity Level
Warning Number
Target Sector
15 October, 2019
● Medium
2019-519
All
Description:
WordPress has released security update to address multiple vulnerabilities in the following versions:
- WordPress version 5.2.3 and earlier.
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Cross-site request forgery (CSRF).
- Cross-site scripting attack (XSS).
Best practice and Recommendations:
The CERT team encourages users to update to WordPress 5.2.4 and to review WordPress security advisory: https://wordpress.org/news/2019/10/wordpress-5-2-4-security-release/