Cross-site scripting (XSS) is a security vulnerability that affects WordPress versions before 4.5.3. An attacker can use a crafted attachment name in the column_title function in the wp-admin/includes/class-wp-media-list-table.php file to inject malicious web scripts or HTML into WordPress. This vulnerability is different from CVE-2016-5834.