FreshPorts - VuXML
This page displays vulnerability information about FreeBSD Ports.
The last vuln.xml file processed by FreshPorts is:
nothing found there
List all Vulnerabilities, by package
List all Vulnerabilities, by date
These are the vulnerabilities relating to the commit you have selected:
|459df1ba-051c-11ea-9673-4c72b94353b5||wordpress -- multiple issues|
wordpress developers reports:
Props to Evan Ricafort for finding an issue where stored XSS (cross-site scripting)
could be added via the Customizer.
rops to J.D. Grimes who found and disclosed a method of viewing unauthenticated posts.
into style tags.
rops to David Newman for highlighting a method to poison the cache of JSON GET requests
via the Vary: Origin header.
Props to Eugene Kolodenker who found a server-side request forgery in the way that URLs
Props to Ben Bidner of the WordPress Security Team who discovered issues related to
referrer validation in the admin.