Description
Cross-site scripting (XSS) vulnerability in WordPress before 4.3.1 allows remote attackers to inject arbitrary web script or HTML by leveraging the mishandling of unclosed HTML elements during processing of shortcode tags.
Remediation
References
Related Vulnerabilities
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2021-33334)
WordPress Plugin Mingle Forum Cross-Site Scripting (1.0.28)
phpMyAdmin Server-Side Request Forgery (SSRF) Vulnerability (CVE-2016-6621)
WordPress Plugin MPL-Publisher-Create your Ebook & Audiobook Cross-Site Scripting (1.29.1)
WordPress Plugin ADIF Log Search Widget Cross-Site Scripting (1.0e)