Description
WordPress is prone to a Denial of Service vulnerability which can be exploited by malicious people to cause the affected website to consume memory and CPU resources, thus denying service to legitimate users. WordPress versions prior to 3.7.4, 3.8.4 and 3.9.2 are vulnerable.
Remediation
Update to WordPress version 3.7.4, 3.8.4, 3.9.2 or latest
References
http://www.breaksec.com/?p=6362
http://codex.wordpress.org/Version_3.7.4
Related Vulnerabilities
Drupal Improper Authentication Vulnerability (CVE-2019-10911)
Drupal Core 8.x.x Cross-Site Request Forgery (8.0.0 - 8.7.14)
WordPress Plugin Cookie Notice & Compliance for GDPR/CCPA Cross-Site Scripting (2.1.1)
Plone CMS URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-1000481)
WordPress Plugin Catch Themes Demo Import Unspecified Vulnerability (1.8)