CVE-2016-10913: XSS
Published Aug 20, 2019
·Updated
The wp-latest-posts plugin before 3.7.5 for WordPress has XSS.
Affected Software
1 affected component
JoomUnited Wp Latest Posts Wordpress<3.7.5
Event History
Aug 20, 2019
CVE Published
via MITRE·02:56 PM
Data Sourced
via MITRE·02:56 PM
Description
Frequently Asked Questions
1
What is CVE-2016-10913?
CVE-2016-10913 is a vulnerability in the wp-latest-posts plugin for WordPress which allows for cross-site scripting (XSS) attacks.
2
How severe is CVE-2016-10913?
CVE-2016-10913 has a severity rating of medium.
3
What software versions are affected by CVE-2016-10913?
Versions up to and excluding 3.7.5 of the wp-latest-posts plugin for WordPress are affected.
4
How can I fix CVE-2016-10913?
To fix CVE-2016-10913, update the wp-latest-posts plugin to version 3.7.5 or later.
5
Where can I find more information about CVE-2016-10913?
More information about CVE-2016-10913 can be found on the WordPress plugin page: https://wordpress.org/plugins/wp-latest-posts/#developers