CVE-2012-2404
EPSS 2.3%Published: 4/21/2012Modified: 5/27/2026
Description
wp-comments-post.php in WordPress before 3.3.2 supports offsite redirects, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via unspecified vectors.
Affected packages (1)
- Debian/wordpressfrom 0, < 3.3.2+dfsg-1