WP REST API (WP API)

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in WP REST API (WP API) 1.2.2

    Fixed

    The WordPress REST API plugin is vulnerable to malicious attacks in versions up to and including 1.2.2. This means that anyone can inject dangerous web scripts into the plugin, which would then be ex...

    Read More
  • Input validation vulnerability in WP REST API (WP API) 1.1

    Fixed

    The JSON REST API plugin for WordPress may be at risk of Cross-Site Request Forgery in versions 1.1 and earlier. This is because of an issue with the validation of nonces, which are used to prevent f...

    Read More
  • Access violation vulnerability in WP REST API (WP API) 1.2.1

    Fixed

    The WordPress REST API (WP API) plugin is not secure for versions up to and including 1.2. This means that attackers may be able to access sensitive user or configuration data. It is important to upd...

    Read More