Crypto Ticker:
sysadmin from Cyber Security News

Critical WordPress Vulnerabilities Enable XSS, SQL Injection and Data Disclosure Attacks

Abinaya
7 hours ago
10 Views
0 Comments
Critical WordPress Vulnerabilities Enable XSS, SQL Injection and Data Disclosure Attacks

WordPress released version 7.1.3 on October 6, 2026, addressing vulnerabilities involving cross-site scripting, SQL injection, information disclosure, and other security weaknesses. The project recommends immediate updates, with fixes also available for older affected branches. Only the latest WordPress version remains actively supported. The release documentation lists seven security issues, although its introductory sentence describes “one security fix.” It provides no CVE identifiers, severity scores, or confirmed exploitation details. Consequently, the headline’s critical wording should not be interpreted as an official severity classification for every vulnerability. One vulnerability involves stored cross-site...

Read the full article at the source.

Join the discussion — comment, vote, and submit links.

Register
Was this helpful?
Share:

Comments (0)

Please login or register to join the discussion

No comments yet. Be the first to comment!