Debian Wordpress vulnerabilities
333 known vulnerabilities affecting debian/wordpress.
Total CVEs
333
CISA KEV
0
Public exploits
53
Exploited in wild
13
Severity breakdown
CRITICAL21HIGH56MEDIUM199LOW57
Vulnerabilities
Page 8 of 17
CVE-2010-5106P4MEDIUMCVSS 6.5fixed in wordpress 3.0.3-1 (bookworm)2010
CVE-2010-5106 [MEDIUM] CVE-2010-5106: wordpress - The XML-RPC remote publishing interface in xmlrpc.php in WordPress before 3.0.3 ...
The XML-RPC remote publishing interface in xmlrpc.php in WordPress before 3.0.3 does not properly check capabilities, which allows remote authenticated users to bypass intended access restrictions, and publish, edit, or delete posts, by leveraging the Author or Contributor role.
Scope: local
bookworm: resolved (fixed in 3.0.3-1)
bullseye: resolved (fixed in 3.0.3-
debian
CVE-2016-2221P4HIGHCVSS 7.4fixed in wordpress 4.4.2+dfsg-1 (bookworm)2016
CVE-2016-2221 [HIGH] CVE-2016-2221: wordpress - Open redirect vulnerability in the wp_validate_redirect function in wp-includes/...
Open redirect vulnerability in the wp_validate_redirect function in wp-includes/pluggable.php in WordPress before 4.4.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a malformed URL that triggers incorrect hostname parsing, as demonstrated by an https:example.com URL.
Scope: local
bookworm: resolved (fixed in 4.4.2
debian
CVE-2015-5730P4MEDIUMCVSS 5.0fixed in wordpress 4.2.4+dfsg-1 (bookworm)2015
CVE-2015-5730 [MEDIUM] CVE-2015-5730: wordpress - The sanitize_widget_instance function in wp-includes/class-wp-customize-widgets....
The sanitize_widget_instance function in wp-includes/class-wp-customize-widgets.php in WordPress before 4.2.4 does not use a constant-time comparison for widgets, which allows remote attackers to conduct a timing side-channel attack by measuring the delay before inequality is calculated.
Scope: local
bookworm: resolved (fixed in 4.2.4+dfsg-1)
bullseye: resolved (f
debian
CVE-2014-9038P4MEDIUMCVSS 6.4fixed in wordpress 4.0.1+dfsg-1 (bookworm)2014
CVE-2014-9038 [MEDIUM] CVE-2014-9038: wordpress - wp-includes/http.php in WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before...
wp-includes/http.php in WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and 4.x before 4.0.1 allows remote attackers to conduct server-side request forgery (SSRF) attacks by referring to a 127.0.0.0/8 resource.
Scope: local
bookworm: resolved (fixed in 4.0.1+dfsg-1)
bullseye: resolved (fixed in 4.0.1+dfsg-1)
forky: resolved (fixed in 4.0.1+dfsg-1)
debian
CVE-2021-39200P4MEDIUMCVSS 5.3fixed in wordpress 5.8.1+dfsg1-1 (bookworm)2021
CVE-2021-39200 [MEDIUM] CVE-2021-39200: wordpress - WordPress is a free and open-source content management system written in PHP and...
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. In affected versions output data of the function wp_die() can be leaked under certain conditions, which can include data like nonces. It can then be used to perform actions on your behalf. This has been patched in WordPress 5.8.1, along with
debian
CVE-2015-5731P4MEDIUMCVSS 6.8fixed in wordpress 4.2.4+dfsg-1 (bookworm)2015
CVE-2015-5731 [MEDIUM] CVE-2015-5731: wordpress - Cross-site request forgery (CSRF) vulnerability in wp-admin/post.php in WordPres...
Cross-site request forgery (CSRF) vulnerability in wp-admin/post.php in WordPress before 4.2.4 allows remote attackers to hijack the authentication of administrators for requests that lock a post, and consequently cause a denial of service (editing blockage), via a get-post-lock action.
Scope: local
bookworm: resolved (fixed in 4.2.4+dfsg-1)
bullseye: resolved (fi
debian
CVE-2022-43504P4MEDIUMCVSS 5.3fixed in wordpress 6.0.3+dfsg1-1 (bookworm)2022
CVE-2022-43504 [MEDIUM] CVE-2022-43504: wordpress - Improper authentication vulnerability in WordPress versions prior to 6.0.3 allow...
Improper authentication vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to obtain the email address of the user who posted a blog using the WordPress Post by Email Feature. The developer also provides new patched releases for all versions since 3.7.
Scope: local
bookworm: resolved (fixed in 6.0.3+dfsg1-1)
bullseye: res
debian
CVE-2014-9037P4MEDIUMCVSS 6.8fixed in wordpress 4.0.1+dfsg-1 (bookworm)2014
CVE-2014-9037 [MEDIUM] CVE-2014-9037: wordpress - WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and 4.x before 4...
WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and 4.x before 4.0.1 might allow remote attackers to obtain access to an account idle since 2008 by leveraging an improper PHP dynamic type comparison for an MD5 hash.
Scope: local
bookworm: resolved (fixed in 4.0.1+dfsg-1)
bullseye: resolved (fixed in 4.0.1+dfsg-1)
forky: resolved (fixed in 4.0.1+dfs
debian
CVE-2007-4154P4MEDIUMCVSS 6.5fixed in wordpress 2.2.2-1 (bookworm)2007
CVE-2007-4154 [MEDIUM] CVE-2007-4154: wordpress - SQL injection vulnerability in options.php in WordPress 2.2.1 allows remote auth...
SQL injection vulnerability in options.php in WordPress 2.2.1 allows remote authenticated administrators to execute arbitrary SQL commands via the page_options parameter to (1) options-general.php, (2) options-writing.php, (3) options-reading.php, (4) options-discussion.php, (5) options-privacy.php, (6) options-permalink.php, (7) options-misc.php, and possibly oth
debian
CVE-2020-11026P4HIGHCVSS 8.7fixed in wordpress 5.4.1+dfsg1-1 (bookworm)2020
CVE-2020-11026 [HIGH] CVE-2020-11026: wordpress - In affected versions of WordPress, files with a specially crafted name when uplo...
In affected versions of WordPress, files with a specially crafted name when uploaded to the Media section can lead to script execution upon accessing the file. This requires an authenticated user with privileges to upload files. This has been patched in version 5.4.1, along with all the previously affected versions via a minor release (5.3.3, 5.2.6, 5.1.5, 5.0.9,
debian
CVE-2010-5293P4MEDIUMCVSS 5.8fixed in wordpress 3.0.2-1 (bookworm)2010
CVE-2010-5293 [MEDIUM] CVE-2010-5293: wordpress - wp-includes/comment.php in WordPress before 3.0.2 does not properly whitelist tr...
wp-includes/comment.php in WordPress before 3.0.2 does not properly whitelist trackbacks and pingbacks in the blogroll, which allows remote attackers to bypass intended spam restrictions via a crafted URL, as demonstrated by a URL that triggers a substring match.
Scope: local
bookworm: resolved (fixed in 3.0.2-1)
bullseye: resolved (fixed in 3.0.2-1)
forky: resolv
debian
CVE-2020-4048P4MEDIUMCVSS 5.7fixed in wordpress 5.4.2+dfsg1-1 (bookworm)2020
CVE-2020-4048 [MEDIUM] CVE-2020-4048: wordpress - In affected versions of WordPress, due to an issue in wp_validate_redirect() and...
In affected versions of WordPress, due to an issue in wp_validate_redirect() and URL sanitization, an arbitrary external link can be crafted leading to unintended/open redirect when clicked. This has been patched in version 5.4.2, along with all the previously affected versions via a minor release (5.3.4, 5.2.7, 5.1.6, 5.0.10, 4.9.15, 4.8.14, 4.7.18, 4.6.19, 4.5.2
debian
CVE-2015-5714P4MEDIUMCVSS 6.1fixed in wordpress 4.3.1+dfsg-1 (bookworm)2015
CVE-2015-5714 [MEDIUM] CVE-2015-5714: wordpress - Cross-site scripting (XSS) vulnerability in WordPress before 4.3.1 allows remote...
Cross-site scripting (XSS) vulnerability in WordPress before 4.3.1 allows remote attackers to inject arbitrary web script or HTML by leveraging the mishandling of unclosed HTML elements during processing of shortcode tags.
Scope: local
bookworm: resolved (fixed in 4.3.1+dfsg-1)
bullseye: resolved (fixed in 4.3.1+dfsg-1)
forky: resolved (fixed in 4.3.1+dfsg-1)
sid:
debian
CVE-2018-20150P4MEDIUMCVSS 6.1fixed in wordpress 5.0.1+dfsg1-1 (bookworm)2018
CVE-2018-20150 [MEDIUM] CVE-2018-20150: wordpress - In WordPress before 4.9.9 and 5.x before 5.0.1, crafted URLs could trigger XSS f...
In WordPress before 4.9.9 and 5.x before 5.0.1, crafted URLs could trigger XSS for certain use cases involving plugins.
Scope: local
bookworm: resolved (fixed in 5.0.1+dfsg1-1)
bullseye: resolved (fixed in 5.0.1+dfsg1-1)
forky: resolved (fixed in 5.0.1+dfsg1-1)
sid: resolved (fixed in 5.0.1+dfsg1-1)
trixie: resolved (fixed in 5.0.1+dfsg1-1)
debian
CVE-2008-0664P4MEDIUMCVSS 6.4fixed in wordpress 2.3.3-1 (bookworm)2008
CVE-2008-0664 [MEDIUM] CVE-2008-0664: wordpress - The XML-RPC implementation (xmlrpc.php) in WordPress before 2.3.3, when registra...
The XML-RPC implementation (xmlrpc.php) in WordPress before 2.3.3, when registration is enabled, allows remote attackers to edit posts of other blog users via unknown vectors.
Scope: local
bookworm: resolved (fixed in 2.3.3-1)
bullseye: resolved (fixed in 2.3.3-1)
forky: resolved (fixed in 2.3.3-1)
sid: resolved (fixed in 2.3.3-1)
trixie: resolved (fixed in 2.3.3-
debian
CVE-2009-2854P4MEDIUMCVSS 6.4fixed in wordpress 2.8.3-1 (bookworm)2009
CVE-2009-2854 [MEDIUM] CVE-2009-2854: wordpress - Wordpress before 2.8.3 does not check capabilities for certain actions, which al...
Wordpress before 2.8.3 does not check capabilities for certain actions, which allows remote attackers to make unauthorized edits or additions via a direct request to (1) edit-comments.php, (2) edit-pages.php, (3) edit.php, (4) edit-category-form.php, (5) edit-link-category-form.php, (6) edit-tag-form.php, (7) export.php, (8) import.php, or (9) link-add.php in wp-a
debian
CVE-2020-28038P4MEDIUMCVSS 6.1fixed in wordpress 5.5.3+dfsg1-1 (bookworm)2020
CVE-2020-28038 [MEDIUM] CVE-2020-28038: wordpress - WordPress before 5.5.2 allows stored XSS via post slugs.
WordPress before 5.5.2 allows stored XSS via post slugs.
Scope: local
bookworm: resolved (fixed in 5.5.3+dfsg1-1)
bullseye: resolved (fixed in 5.5.3+dfsg1-1)
forky: resolved (fixed in 5.5.3+dfsg1-1)
sid: resolved (fixed in 5.5.3+dfsg1-1)
trixie: resolved (fixed in 5.5.3+dfsg1-1)
debian
CVE-2018-20149P4MEDIUMCVSS 5.4fixed in wordpress 5.0.1+dfsg1-1 (bookworm)2018
CVE-2018-20149 [MEDIUM] CVE-2018-20149: wordpress - In WordPress before 4.9.9 and 5.x before 5.0.1, when the Apache HTTP Server is u...
In WordPress before 4.9.9 and 5.x before 5.0.1, when the Apache HTTP Server is used, authors could upload crafted files that bypass intended MIME type restrictions, leading to XSS, as demonstrated by a .jpg file without JPEG data.
Scope: local
bookworm: resolved (fixed in 5.0.1+dfsg1-1)
bullseye: resolved (fixed in 5.0.1+dfsg1-1)
forky: resolved (fixed in 5.0.1+
debian
CVE-2007-3543P4MEDIUMCVSS 6.0fixed in wordpress 2.2.1-1 (bookworm)2007
CVE-2007-3543 [MEDIUM] CVE-2007-3543: wordpress - Unrestricted file upload vulnerability in WordPress before 2.2.1 and WordPress M...
Unrestricted file upload vulnerability in WordPress before 2.2.1 and WordPress MU before 1.2.3 allows remote authenticated users to upload and execute arbitrary PHP code by making a post that specifies a .php filename in the _wp_attached_file metadata field; and then sending this file's content, along with its post_ID value, to (1) wp-app.php or (2) app.php.
Scope
debian
CVE-2024-6307P4MEDIUMCVSS 6.4fixed in wordpress 6.1.9+dfsg1-0+deb12u1 (bookworm)2024
CVE-2024-6307 [MEDIUM] CVE-2024-6307: wordpress - WordPress Core is vulnerable to Stored Cross-Site Scripting via the HTML API in ...
WordPress Core is vulnerable to Stored Cross-Site Scripting via the HTML API in various versions prior to 6.5.5 due to insufficient input sanitization and output escaping on URLs. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an inject
debian