Package        : wordpress
Version        : 4.1.27+dfsg-0+deb8u1
CVE ID         : CVE-2019-16217 CVE-2019-16218 CVE-2019-16219
                 CVE-2019-16220 CVE-2019-16221 CVE-2019-16222
                 CVE-2019-16223
Debian Bug     : 939543

Several cross-site scripting (XSS) vulnerabilities were discovered in
Wordpress, a popular content management framework. An attacker can use
these flaws to send malicious scripts to an unsuspecting user.

For Debian 8 "Jessie", these problems have been fixed in version
4.1.27+dfsg-0+deb8u1.

We recommend that you upgrade your wordpress packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

Debian LTS: DLA-1960-1: wordpress security update

October 17, 2019
Several cross-site scripting (XSS) vulnerabilities were discovered in Wordpress, a popular content management framework

Summary

We recommend that you upgrade your wordpress packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
Package : wordpress
Version : 4.1.27+dfsg-0+deb8u1
CVE ID : CVE-2019-16217 CVE-2019-16218 CVE-2019-16219
Debian Bug : 939543

Related News