WordPress Core, the software powering websites, had a security vulnerability in versions before 3.8.2 that allowed malicious administrative users to inject malicious code into the website. This code could have caused serious damage to the website and its data.