[wp-trac] [WordPress Trac] #60333: Host Header Injection Vulnerability in /wp-content Folder

WordPress Trac noreply at wordpress.org
Wed Jan 24 13:04:20 UTC 2024


#60333: Host Header Injection Vulnerability in /wp-content Folder
--------------------------+------------------------------
 Reporter:  manishn       |       Owner:  (none)
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  Awaiting Review
Component:  General       |     Version:  6.4
 Severity:  critical      |  Resolution:
 Keywords:                |     Focuses:
--------------------------+------------------------------

Comment (by roytanck):

 If you have access the the vhost configuration files on the server, you
 may be able to set things up as described here:
 https://stackoverflow.com/a/73697872 .

 To me, it looks like things work as intended, and I would simply leave it
 as is.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/60333#comment:3>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list