Input validation vulnerability in WordPress 5.9.9

WordPress Core is susceptible to a security issue called Stored Cross-Site Scripting. This can happen in different versions up to 6.5.5 because the input and output of URLs are not properly checked for harmful code. This means that people who are logged in and have a certain level of access can add harmful code to a page, which will then execute when someone else views that page.

Detected in:

WordPress fixed vulnerable versions: >= 5.9 <= 5.9.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.