Description
Cross-site scripting (XSS) vulnerability in wp-admin/includes/class-wp-posts-list-table.php in the posts list table in WordPress before 4.7.2 allows remote attackers to inject arbitrary web script or HTML via a crafted excerpt.
Remediation
References
Related Vulnerabilities
WordPress Plugin WooCommerce Save For Later Cart Enhancement PHP Object Injection (1.0.6)
Oracle Database Server CVE-2007-2116 Vulnerability (CVE-2007-2116)
WordPress Plugin Better Search Cross-Site Request Forgery (2.5.2)
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-5321)