Description
In WordPress before 4.7.3 (wp-admin/js/tags-box.js), there is cross-site scripting (XSS) via taxonomy term names.
Remediation
References
Related Vulnerabilities
WordPress Plugin Essential Addons for Elementor Cross-Site Scripting (5.0.8)
Joomla! Core 3.x.x Cross-Site Scripting (3.2.0 - 3.9.3)
Oracle JRE CVE-2013-1484 Vulnerability (CVE-2013-1484)
WordPress Plugin ShareThis Dashboard for Google Analytics Cross-Site Scripting (2.5.1)
WordPress Plugin RK Responsive Contact Form SQL Injection (1.0.0)