Description
WordPress is prone to a Denial of Service vulnerability which can be exploited by malicious people to cause the affected website to consume memory and CPU resources, thus denying service to legitimate users. WordPress versions 4.7.x ranging from 4.7 and up to (and including) 4.7.9 are vulnerable.
Remediation
Evaluate and apply the suggested patch
References
https://baraktawily.blogspot.ro/2018/02/how-to-dos-29-of-world-wide-websites.html
https://www.youtube.com/watch?v=nNDsGTalXS0
https://github.com/Quitten/WordPress/blob/master/wp-dos-patch.sh
https://www.exploit-db.com/exploits/43968/
https://packetstormsecurity.com/files/146249/WordPress-Core-Denial-Of-Service.html
https://www.rastating.com/protecting-wordpress-against-cve-2018-6389/
Related Vulnerabilities
Joomla! Core 3.x.x Prototype Pollution (3.0.0 - 3.9.4)
WordPress Plugin UpdraftPlus WordPress Backup Cross-Site Scripting (1.16.68)
XWiki Cleartext Storage of Sensitive Information Vulnerability (CVE-2023-50719)
WordPress Plugin Ecwid Ecommerce Shopping Cart PHP Object Injection (4.4.3)
Python URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2016-1000110)