Description
Cross-site scripting vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to inject an arbitrary script. The developer also provides new patched releases for all versions since 3.7.
Remediation
References
Related Vulnerabilities
WordPress Plugin SEO by Squirrly SEO Multiple Unspecified Vulnerabilities (6.1.4)
WordPress Plugin Smart Manager for WooCommerce & WPeC SQL Injection (3.9.6)
MySQL CVE-2016-0665 Vulnerability (CVE-2016-0665)
WordPress Plugin Symbiostock-Sell Photos Online For Free! Arbitrary File Upload (6.0.0)
Envoy Proxy Improper Certificate Validation Vulnerability (CVE-2022-21656)