Description
In WordPress before 4.7.3 (wp-includes/pluggable.php), control characters can trick redirect URL validation.
Remediation
References
Related Vulnerabilities
WebLogic CVE-2019-2647 Vulnerability (CVE-2019-2647)
WordPress Plugin Product Table by WBW Remote Code Execution (2.0.1)
WordPress Plugin Mail Masta Multiple SQL Injection Vulnerabilities (1.0)
MySQL CVE-2023-22038 Vulnerability (CVE-2023-22038)
Oracle JRE Improper Access Control Vulnerability (CVE-2025-30691)