Description
In WordPress before 4.7.3 (wp-includes/embed.php), there is authenticated Cross-Site Scripting (XSS) in YouTube URL Embeds.
Remediation
References
Related Vulnerabilities
XWiki Exposure of Resource to Wrong Sphere Vulnerability (CVE-2023-37911)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-3848)
WordPress Plugin Broken Link Checker PHAR Deserialization (1.11.16)
WordPress CVE-2014-5203 Vulnerability (CVE-2014-5203)
WordPress Plugin WPBakery Page Builder Cross-Site Scripting (6.4.0)