git: 76efbdd6eeb3 - main - security/vuxml: Add wordpress vulnerability
- Go to: [ bottom of page ] [ top of archives ] [ this month ]
Date: Wed, 10 Apr 2024 19:39:08 UTC
The branch main has been updated by flo: URL: https://cgit.FreeBSD.org/ports/commit/?id=76efbdd6eeb3a2f91cfe2111400ccc998f8d3311 commit 76efbdd6eeb3a2f91cfe2111400ccc998f8d3311 Author: Florian Smeets <flo@FreeBSD.org> AuthorDate: 2024-04-10 18:19:38 +0000 Commit: Florian Smeets <flo@FreeBSD.org> CommitDate: 2024-04-10 19:38:12 +0000 security/vuxml: Add wordpress vulnerability --- security/vuxml/vuln/2024.xml | 36 ++++++++++++++++++++++++++++++++++++ 1 file changed, 36 insertions(+) diff --git a/security/vuxml/vuln/2024.xml b/security/vuxml/vuln/2024.xml index cb4868cdd040..1984d1bbe8b3 100644 --- a/security/vuxml/vuln/2024.xml +++ b/security/vuxml/vuln/2024.xml @@ -1,3 +1,39 @@ + <vuln vid="ea4a2dfc-f761-11ee-af2c-589cfc0f81b0"> + <topic>wordpress -- XSS</topic> + <affects> + <package> + <name>wordpress</name> + <name>fr-wordpress-fr_FR</name> + <range><ge>6.5.0,1</ge><lt>6.5.1,1</lt></range> + <range><lt>6.4.4,1</lt></range> + </package> + <package> + <name>ru-wordpress-ru_RU</name> + <name>ja-wordpress-ja</name> + <name>zh-wordpress-zh_CN</name> + <name>zh-wordpress-zh_TW</name> + <name>de-wordpress-de_DE</name> + <range><ge>6.5.0</ge><lt>6.5.1</lt></range> + <range><lt>6.4.4</lt></range> + </package> + </affects> + <description> + <body xmlns="http://www.w3.org/1999/xhtml"> + <p>The Wordpress team reports:</p> + <blockquote cite="https://wordpress.org/documentation/wordpress-version/version-6-4-4/"> + <p>A cross-site scripting (XSS) vulnerability affecting the Avatar block type</p> + </blockquote> + </body> + </description> + <references> + <url>https://wordpress.org/documentation/wordpress-version/version-6-4-4/</url> + </references> + <dates> + <discovery>2024-04-09</discovery> + <entry>2024-04-10</entry> + </dates> + </vuln> + <vuln vid="8e6f684b-f333-11ee-a573-84a93843eb75"> <topic>Apache httpd -- multiple vulnerabilities</topic> <affects>