[wp-trac] [WordPress Trac] #22861: Wordpress 3.5 - Cross Site Scripting Vulnerability

WordPress Trac noreply at wordpress.org
Wed Dec 12 00:16:37 UTC 2012


#22861: Wordpress 3.5 - Cross Site Scripting Vulnerability
-----------------------------+----------------------
 Reporter:  shubhammittal01  |       Owner:
     Type:  defect (bug)     |      Status:  closed
 Priority:  normal           |   Milestone:
Component:  Security         |     Version:
 Severity:  normal           |  Resolution:  invalid
 Keywords:                   |
-----------------------------+----------------------

Comment (by miqrogroove):

 And to offer a more general response to this:

 Pasting code into your own website is not XSS.  You have to demonstrate
 that a second site is involved or that injection is possible without
 administrator privilege.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/22861#comment:4>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list