CVE-2014-9032
EPSS 0.42%Published: 11/25/2014Modified: 5/27/2026
Description
Cross-site scripting (XSS) vulnerability in the media-playlists feature in WordPress before 3.9.x before 3.9.3 and 4.x before 4.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected packages (1)
- Debian/wordpressfrom 0, < 4.0.1+dfsg-1