WordPress cross site scripting vulnerability

The WordPress development team has released a new version that patches a vulnerability which can allow attackers to execute arbitrary scripts. The exploit is caused by an input validation error in the file ‘wp-admin/edit-post-rows.php’ when used with the posts_columns parameter.

Versions of WordPress prior to 2.3.1 are all affected and the solution is to upgrade to WordPress 2.3.1.

Question, Comments...

Do you have more questions. Please either leave a comment below or join us in our new forum.

Leave a Reply