[wp-trac] [WordPress Trac] #48840: Stored Xss on WordPress

WordPress Trac noreply at wordpress.org
Sat Nov 30 08:24:53 UTC 2019


#48840: Stored Xss on WordPress
---------------------------+-----------------------------
 Reporter:  mousecybersec  |      Owner:  (none)
     Type:  defect (bug)   |     Status:  new
 Priority:  normal         |  Milestone:  Awaiting Review
Component:  Post Formats   |    Version:  trunk
 Severity:  critical       |   Keywords:
  Focuses:  accessibility  |
---------------------------+-----------------------------
 I tried to make a block in the post editor with an html block, then put a
 payload on the block, after I post and click it will appear an alert on
 the wordpress website.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/48840>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list