MEDIUM
Cross-site scripting in stats method (object cache) in WordPress
Published Apr 30, 2020
6.1
MEDIUMCVSS 3.1
EPSS 2.14%
Description
In affected versions of WordPress, a vulnerability in the stats() method of class-wp-object-cache.php can be exploited to execute cross-site scripting (XSS) attacks. This has been patched in version 5.4.1, along with all the previously affected versions via a minor release (5.3.3, 5.2.6, 5.1.5, 5.0.9, 4.9.14, 4.8.13, 4.7.17, 4.6.18, 4.5.21, 4.4.22, 4.3.23, 4.2.27, 4.1.30, 4.0.30, 3.9.31, 3.8.33, 3.7.33).
Affected products
-
- Version >= 3.7.0, < 3.7.33StatusaffectedConstraints-
- Version >= 3.8.0, < 3.8.33StatusaffectedConstraints-
- Version >= 3.9.0, < 3.9.31StatusaffectedConstraints-
- Version >= 4.0.0, < 4.0.30StatusaffectedConstraints-
- Version >= 4.1.0, < 4.1.30StatusaffectedConstraints-
- Version >= 4.2.0, < 4.2.27StatusaffectedConstraints-
- Version >= 4.3.0, < 4.3.23StatusaffectedConstraints-
- Version >= 4.4.0, < 4.4.22StatusaffectedConstraints-
- Version >= 4.5.0, < 4.5.21StatusaffectedConstraints-
- Version >= 4.6.0, < 4.6.18StatusaffectedConstraints-
- Version >= 4.7.0, < 4.7.17StatusaffectedConstraints-
- Version >= 4.8.0, < 4.8.13StatusaffectedConstraints-
- Version >= 4.9.0, < 4.9.14StatusaffectedConstraints-
- Version >= 5.0.0, < 5.0.9StatusaffectedConstraints-
- Version >= 5.1.0, < 5.1.5StatusaffectedConstraints-
- Version >= 5.2.0, < 5.2.6StatusaffectedConstraints-
- Version >= 5.3.0, < 5.3.3StatusaffectedConstraints-
- Version >= 5.4.0, < 5.4.1StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| WordPress | WordPress | n/a |
|
Configuration 1
OR
- 8.0
- 9.0
- 10.0
Configuration 2
OR
- ≥ 3.7 · < 3.7.33
- ≥ 3.8 · < 3.8.33
- ≥ 3.9 · < 3.9.31
- ≥ 4.0 · < 4.0.30
- ≥ 4.1 · < 4.1.30
- ≥ 4.2 · < 4.2.27
- ≥ 4.3 · < 4.3.23
- ≥ 4.4 · < 4.4.22
- ≥ 4.5 · < 4.5.21
- ≥ 4.6 · < 4.6.18
- ≥ 4.7 · < 4.7.17
- ≥ 4.8 · < 4.8.13
- ≥ 4.9 · < 4.9.14
- ≥ 5.0 · < 5.0.9
- ≥ 5.1 · < 5.1.5
- ≥ 5.2 · < 5.2.6
- ≥ 5.3 · < 5.3.3
- 5.4
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (4)
- https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-568w-8m88-8g2c x_refsource_CONFIRMThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/05/msg00011.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://wordpress.org/support/wordpress-version/version-5-4-1/#security-updates x_refsource_MISCRelease NotesVendor Advisory
- https://www.debian.org/security/2020/dsa-4677 vendor-advisoryx_refsource_DEBIANThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-568w-8m88-8g2c | x_refsource_CONFIRMThird Party Advisory | |
| https://lists.debian.org/debian-lts-announce/2020/05/msg00011.html | mailing-listx_refsource_MLISTMailing ListThird Party Advisory | |
| https://wordpress.org/support/wordpress-version/version-5-4-1/#security-updates | x_refsource_MISCRelease NotesVendor Advisory | |
| https://www.debian.org/security/2020/dsa-4677 | vendor-advisoryx_refsource_DEBIANThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner GitHub_M
Published Apr 30, 2020
Updated Aug 4, 2024
Reserved Mar 30, 2020
Link CVE-2020-11029
CISA Vulnrichment
Updated n/a