Hosts vulnerable to CVE-2024-4439

CVE-2024-4439 — severity high, CVSS 7.2 — 4 affected hosts indexed by QROS Explore.

About CVE-2024-4439

WordPress Core is vulnerable to Stored Cross-Site Scripting via user display names in the Avatar block in various versions up to 6.5.2 due to insufficient output escaping on the display name. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbit

Showing 4 of 4 hosts, ranked by risk score.

Search all CVE-2024-4439 hosts in Explore

Open in Explore →