vulnerability

FreeBSD: VID-cee3d12f-bf41-11e7-bced-00e04c1ea73d: wordpress -- multiple issues

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Nov 1, 2017
Added
Nov 2, 2017
Modified
Dec 10, 2025

Description

wordpress developers reports: WordPress versions 4.8.2 and earlier are affected by an issue where $wpdb->prepare() can create unexpected and unsafe queries leading to potential SQL injection (SQLi). WordPress core is not directly vulnerable to this issue, but we've added hardening to prevent plugins and themes from accidentally causing a vulnerability.

Solution

freebsd-upgrade-package-wordpress

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.