CVE-2012-6633

Wordpress < 3.3.2 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in wp-includes/default-filters.php in WordPress before 3.3.3 allows remote attackers to inject arbitrary web script or HTML via an editable slug field.

Scores

EPSS 0.0039
EPSS Percentile 59.9%

Details

CWE
CWE-79
Status published
Products (19)
wordpress/wordpress < 3.3.2
wordpress/wordpress
wordpress/wordpress
wordpress/wordpress
wordpress/wordpress
wordpress/wordpress
wordpress/wordpress
wordpress/wordpress
wordpress/wordpress
wordpress/wordpress
... and 9 more
Published Jan 21, 2014
Tracked Since Feb 18, 2026