Debian Wordpress vulnerabilities
333 known vulnerabilities affecting debian/wordpress.
Total CVEs
333
CISA KEV
0
Public exploits
53
Exploited in wild
13
Severity breakdown
CRITICAL21HIGH56MEDIUM199LOW57
Vulnerabilities
Page 9 of 17
CVE-2019-16780P4MEDIUMCVSS 5.8fixed in wordpress 5.3.2+dfsg1-1 (bookworm)2019
CVE-2019-16780 [MEDIUM] CVE-2019-16780: wordpress - WordPress users with lower privileges (like contributors) can inject JavaScript ...
WordPress users with lower privileges (like contributors) can inject JavaScript code in the block editor using a specific payload, which is executed within the dashboard. This can lead to XSS if an admin opens the post in the editor. Execution of this attack does require an authenticated user. This has been patched in WordPress 5.3.1, along with all the previous
debian
CVE-2006-4028P4MEDIUMCVSS 5.0fixed in wordpress 2.0.4-1 (bookworm)2006
CVE-2006-4028 [MEDIUM] CVE-2006-4028: wordpress - Multiple unspecified vulnerabilities in WordPress before 2.0.4 have unknown impa...
Multiple unspecified vulnerabilities in WordPress before 2.0.4 have unknown impact and remote attack vectors. NOTE: due to lack of details, it is not clear how these issues are different from CVE-2006-3389 and CVE-2006-3390, although it is likely that 2.0.4 addresses an unspecified issue related to "Anyone can register" functionality (user registration for guests)
debian
CVE-2012-6112P4MEDIUMCVSS 5.0fixed in wordpress 3.5.1+dfsg-2 (bookworm)2012
CVE-2012-6112 [MEDIUM] CVE-2012-6112: wordpress - classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellchecker) addon ...
classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellchecker) addon before 2.0.6.1 for TinyMCE, as used in Moodle 2.1.x before 2.1.10, 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 and other products, does not properly handle control characters, which allows remote attackers to trigger arbitrary outbound HTTP requests via a crafted str
debian
CVE-2014-5204P4MEDIUMCVSS 6.8fixed in wordpress 3.9.2+dfsg-1 (bookworm)2014
CVE-2014-5204 [MEDIUM] CVE-2014-5204: wordpress - wp-includes/pluggable.php in WordPress before 3.9.2 rejects invalid CSRF nonces ...
wp-includes/pluggable.php in WordPress before 3.9.2 rejects invalid CSRF nonces with a different timing depending on which characters in the nonce are incorrect, which makes it easier for remote attackers to bypass a CSRF protection mechanism via a brute-force attack.
Scope: local
bookworm: resolved (fixed in 3.9.2+dfsg-1)
bullseye: resolved (fixed in 3.9.2+dfsg-1
debian
CVE-2014-5205P4MEDIUMCVSS 6.8fixed in wordpress 3.9.2+dfsg-1 (bookworm)2014
CVE-2014-5205 [MEDIUM] CVE-2014-5205: wordpress - wp-includes/pluggable.php in WordPress before 3.9.2 does not use delimiters duri...
wp-includes/pluggable.php in WordPress before 3.9.2 does not use delimiters during concatenation of action values and uid values in CSRF tokens, which makes it easier for remote attackers to bypass a CSRF protection mechanism via a brute-force attack.
Scope: local
bookworm: resolved (fixed in 3.9.2+dfsg-1)
bullseye: resolved (fixed in 3.9.2+dfsg-1)
forky: resolved
debian
CVE-2018-10101P4MEDIUMCVSS 6.1fixed in wordpress 4.9.5+dfsg1-1 (bookworm)2018
CVE-2018-10101 [MEDIUM] CVE-2018-10101: wordpress - Before WordPress 4.9.5, the URL validator assumed URLs with the hostname localho...
Before WordPress 4.9.5, the URL validator assumed URLs with the hostname localhost were on the same host as the WordPress server.
Scope: local
bookworm: resolved (fixed in 4.9.5+dfsg1-1)
bullseye: resolved (fixed in 4.9.5+dfsg1-1)
forky: resolved (fixed in 4.9.5+dfsg1-1)
sid: resolved (fixed in 4.9.5+dfsg1-1)
trixie: resolved (fixed in 4.9.5+dfsg1-1)
debian
CVE-2012-6634P4MEDIUMCVSS 6.4fixed in wordpress 3.4+dfsg-1 (bookworm)2012
CVE-2012-6634 [MEDIUM] CVE-2012-6634: wordpress - wp-admin/media-upload.php in WordPress before 3.3.3 allows remote attackers to o...
wp-admin/media-upload.php in WordPress before 3.3.3 allows remote attackers to obtain sensitive information or bypass intended media-attachment restrictions via a post_id value.
Scope: local
bookworm: resolved (fixed in 3.4+dfsg-1)
bullseye: resolved (fixed in 3.4+dfsg-1)
forky: resolved (fixed in 3.4+dfsg-1)
sid: resolved (fixed in 3.4+dfsg-1)
trixie: resolved (f
debian
CVE-2019-20042P4MEDIUMCVSS 6.1fixed in wordpress 5.3.2+dfsg1-1 (bookworm)2019
CVE-2019-20042 [MEDIUM] CVE-2019-20042: wordpress - In wp-includes/formatting.php in WordPress 3.7 to 5.3.0, the function wp_targete...
In wp-includes/formatting.php in WordPress 3.7 to 5.3.0, the function wp_targeted_link_rel() can be used in a particular way to result in a stored cross-site scripting (XSS) vulnerability. This has been patched in WordPress 5.3.1, along with all the previous WordPress versions from 3.7 to 5.3 via a minor release.
Scope: local
bookworm: resolved (fixed in 5.3.2+d
debian
CVE-2015-5715P4MEDIUMCVSS 4.3fixed in wordpress 4.3.1+dfsg-1 (bookworm)2015
CVE-2015-5715 [MEDIUM] CVE-2015-5715: wordpress - The mw_editPost function in wp-includes/class-wp-xmlrpc-server.php in the XMLRPC...
The mw_editPost function in wp-includes/class-wp-xmlrpc-server.php in the XMLRPC subsystem in WordPress before 4.3.1 allows remote authenticated users to bypass intended access restrictions, and arrange for a private post to be published and sticky, via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 4.3.1+dfsg-1)
bullseye: resolved (fixed in 4.3.1+
debian
CVE-2017-5491P4MEDIUMCVSS 5.3fixed in wordpress 4.7.1+dfsg-1 (bookworm)2017
CVE-2017-5491 [MEDIUM] CVE-2017-5491: wordpress - wp-mail.php in WordPress before 4.7.1 might allow remote attackers to bypass int...
wp-mail.php in WordPress before 4.7.1 might allow remote attackers to bypass intended posting restrictions via a spoofed mail server with the mail.example.com name.
Scope: local
bookworm: resolved (fixed in 4.7.1+dfsg-1)
bullseye: resolved (fixed in 4.7.1+dfsg-1)
forky: resolved (fixed in 4.7.1+dfsg-1)
sid: resolved (fixed in 4.7.1+dfsg-1)
trixie: resolved (fixed
debian
CVE-2007-0262P4HIGHCVSS 7.8fixed in wordpress 2.0.8-1 (bookworm)2007
CVE-2007-0262 [HIGH] CVE-2007-0262: wordpress - WordPress 2.0.6, and 2.1Alpha 3 (SVN:4662), does not properly verify that the m ...
WordPress 2.0.6, and 2.1Alpha 3 (SVN:4662), does not properly verify that the m parameter value has the string data type, which allows remote attackers to obtain sensitive information via an invalid m[] parameter, as demonstrated by obtaining the path, and obtaining certain SQL information such as the table prefix.
Scope: local
bookworm: resolved (fixed in 2.0.8-1)
debian
CVE-2020-4046P4MEDIUMCVSS 5.4fixed in wordpress 5.4.2+dfsg1-1 (bookworm)2020
CVE-2020-4046 [MEDIUM] CVE-2020-4046: wordpress - In affected versions of WordPress, users with low privileges (like contributors ...
In affected versions of WordPress, users with low privileges (like contributors and authors) can use the embed block in a certain way to inject unfiltered HTML in the block editor. When affected posts are viewed by a higher privileged user, this could lead to script execution in the editor/wp-admin. This has been patched in version 5.4.2, along with all the previo
debian
CVE-2021-39201P4HIGHCVSS 7.6fixed in wordpress 5.8.1+dfsg1-1 (bookworm)2021
CVE-2021-39201 [HIGH] CVE-2021-39201: wordpress - WordPress is a free and open-source content management system written in PHP and...
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. ### Impact The issue allows an authenticated but low-privileged user (like contributor/author) to execute XSS in the editor. This bypasses the restrictions imposed on users who do not have the permission to post `unfiltered_html`. ### Patches T
debian
CVE-2016-4566P4MEDIUMCVSS 6.1fixed in wordpress 4.5.2+dfsg-1 (bookworm)2016
CVE-2016-4566 [MEDIUM] CVE-2016-4566: wordpress - Cross-site scripting (XSS) vulnerability in plupload.flash.swf in Plupload befor...
Cross-site scripting (XSS) vulnerability in plupload.flash.swf in Plupload before 2.1.9, as used in WordPress before 4.5.2, allows remote attackers to inject arbitrary web script or HTML via a Same-Origin Method Execution (SOME) attack.
Scope: local
bookworm: resolved (fixed in 4.5.2+dfsg-1)
bullseye: resolved (fixed in 4.5.2+dfsg-1)
forky: resolved (fixed in 4.5.
debian
CVE-2014-9033P4MEDIUMCVSS 6.8fixed in wordpress 4.0.1+dfsg-1 (bookworm)2014
CVE-2014-9033 [MEDIUM] CVE-2014-9033: wordpress - Cross-site request forgery (CSRF) vulnerability in wp-login.php in WordPress 3.7...
Cross-site request forgery (CSRF) vulnerability in wp-login.php in WordPress 3.7.4, 3.8.4, 3.9.2, and 4.0 allows remote attackers to hijack the authentication of arbitrary users for requests that reset passwords.
Scope: local
bookworm: resolved (fixed in 4.0.1+dfsg-1)
bullseye: resolved (fixed in 4.0.1+dfsg-1)
forky: resolved (fixed in 4.0.1+dfsg-1)
sid: resolved
debian
CVE-2017-6819P4MEDIUMCVSS 6.5fixed in wordpress 4.7.3+dfsg-1 (bookworm)2017
CVE-2017-6819 [MEDIUM] CVE-2017-6819: wordpress - In WordPress before 4.7.3, there is cross-site request forgery (CSRF) in Press T...
In WordPress before 4.7.3, there is cross-site request forgery (CSRF) in Press This (wp-admin/includes/class-wp-press-this.php), leading to excessive use of server resources. The CSRF can trigger an outbound HTTP request for a large file that is then parsed by Press This.
Scope: local
bookworm: resolved (fixed in 4.7.3+dfsg-1)
bullseye: resolved (fixed in 4.7.3+df
debian
CVE-2019-16218P4MEDIUMCVSS 6.1fixed in wordpress 5.2.3+dfsg1-1 (bookworm)2019
CVE-2019-16218 [MEDIUM] CVE-2019-16218: wordpress - WordPress before 5.2.3 allows XSS in stored comments.
WordPress before 5.2.3 allows XSS in stored comments.
Scope: local
bookworm: resolved (fixed in 5.2.3+dfsg1-1)
bullseye: resolved (fixed in 5.2.3+dfsg1-1)
forky: resolved (fixed in 5.2.3+dfsg1-1)
sid: resolved (fixed in 5.2.3+dfsg1-1)
trixie: resolved (fixed in 5.2.3+dfsg1-1)
debian
CVE-2019-17672P4MEDIUMCVSS 6.1fixed in wordpress 5.2.4+dfsg1-1 (bookworm)2019
CVE-2019-17672 [MEDIUM] CVE-2019-17672: wordpress - WordPress before 5.2.4 is vulnerable to a stored XSS attack to inject JavaScript...
WordPress before 5.2.4 is vulnerable to a stored XSS attack to inject JavaScript into STYLE elements.
Scope: local
bookworm: resolved (fixed in 5.2.4+dfsg1-1)
bullseye: resolved (fixed in 5.2.4+dfsg1-1)
forky: resolved (fixed in 5.2.4+dfsg1-1)
sid: resolved (fixed in 5.2.4+dfsg1-1)
trixie: resolved (fixed in 5.2.4+dfsg1-1)
debian
CVE-2007-3544P4MEDIUMCVSS 6.0fixed in wordpress 2.2.2-1 (bookworm)2007
CVE-2007-3544 [MEDIUM] CVE-2007-3544: wordpress - Unrestricted file upload vulnerability in (1) wp-app.php and (2) app.php in Word...
Unrestricted file upload vulnerability in (1) wp-app.php and (2) app.php in WordPress 2.2.1 and WordPress MU 1.2.3 allows remote authenticated users to upload and execute arbitrary PHP code via unspecified vectors, possibly related to the wp_postmeta table and the use of custom fields in normal (non-attachment) posts. NOTE: this issue reportedly exists because of
debian
CVE-2020-11029P4MEDIUMCVSS 5.8fixed in wordpress 5.4.1+dfsg1-1 (bookworm)2020
CVE-2020-11029 [MEDIUM] CVE-2020-11029: wordpress - In affected versions of WordPress, a vulnerability in the stats() method of clas...
In affected versions of WordPress, a vulnerability in the stats() method of class-wp-object-cache.php can be exploited to execute cross-site scripting (XSS) attacks. This has been patched in version 5.4.1, along with all the previously affected versions via a minor release (5.3.3, 5.2.6, 5.1.5, 5.0.9, 4.9.14, 4.8.13, 4.7.17, 4.6.18, 4.5.21, 4.4.22, 4.3.23, 4.2.2
debian