WordPress versions before 4.8.3 have a security vulnerability that may allow hackers to inject malicious code into websites in the form of plugins and themes. This is done by using a special method called “”double prepare”” and is different from a previously identified vulnerability.