CVE-2013-2201

Source
https://nvd.nist.gov/vuln/detail/CVE-2013-2201
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2013-2201.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2013-2201
Downstream
Related
Published
2013-07-08T20:55:01Z
Modified
2025-08-09T20:01:27Z
Summary
[none]
Details

Multiple cross-site scripting (XSS) vulnerabilities in WordPress before 3.5.2 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) uploads of media files, (2) editing of media files, (3) installation of plugins, (4) updates to plugins, (5) installation of themes, or (6) updates to themes.

References

Affected packages