[wp-trac] [WordPress Trac] #46461: WordPress Version 5.1 Default Theme xss issue

WordPress Trac noreply at wordpress.org
Mon Mar 11 05:48:07 UTC 2019


#46461: WordPress Version 5.1 Default Theme xss issue
---------------------------+----------------------
 Reporter:  tanjimulislam  |       Owner:  (none)
     Type:  defect (bug)   |      Status:  closed
 Priority:  normal         |   Milestone:
Component:  Comments       |     Version:
 Severity:  normal         |  Resolution:  invalid
 Keywords:                 |     Focuses:
---------------------------+----------------------
Changes (by ocean90):

 * status:  assigned => closed
 * focuses:  javascript =>
 * severity:  minor => normal
 * version:  5.1 =>
 * milestone:  Awaiting Review =>
 * resolution:   => invalid


Comment:

 While creating the ticket you should have seen this message:

 > **Do not report potential security vulnerabilities here.**
 > See the [https://make.wordpress.org/core/handbook/reporting-security-
 vulnerabilities/ Security FAQ] and visit the
 [https://hackerone.com/wordpress WordPress HackerOne program].

 About your report, you should check if it's not covered by
 https://make.wordpress.org/core/handbook/testing/reporting-security-
 vulnerabilities/#why-are-some-users-allowed-to-post-unfiltered-html.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/46461#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list