← Back
CVE-2018-20148

In WordPress before 4.9.9 and 5.x before 5.0.1, contributors could conduct PHP object injection attacks via crafted metadata in a wp.getMediaItem XMLR...

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →