Cross-site scripting (XSS) is a vulnerability that affects WordPress when custom 404 pages that call get_sidebar are used. This vulnerability allows attackers to inject malicious web scripts or HTML into WordPress through the query string (PHP_SELF). This is different than a similar vulnerability