CVE-2021-39200 log
Source |
|
Severity | Medium |
Remote | Yes |
Type | Information disclosure |
Description | In WordPress before version 5.8.1, output data of the function wp_die() can be leaked under certain conditions, which can include data like nonces. It can then be used to perform actions on your behalf. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-2373 | wordpress | 5.8-1 | 5.8.1-1 | Medium | Fixed |
References |
---|
https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-m9hc-7v5q-x8q5 https://hackerone.com/reports/1142140 |