wordpress Info

wordpress was added to epel7 repo on 2014-01-18
Page updated: 2023-11-21 11:36
Repo Status - Overall Status

Source NVR: wordpress-5.1.17-1.el7 (2022-03-18)

Binary Packages

wordpress wordpress-5.1.17-1.el7

Bugs

1449199 NEW CVE-2017-8295 wordpress: Usage of Host HTTP header for a password-reset e-mail message [epel-all]
1595586 NEW CVE-2018-12895 wordpress: Author users can execute arbitrary code by leveraging directory traversal on the wp-admin/post.php thumb parameter [epel-all]
1679155 NEW CVE-2019-8942 CVE-2019-8943 wordpress: various flaws [epel-all]
1774226 NEW CVE-2019-17671 wordpress: unauthenticated viewing of certain content is possible because the static query property is mishandled [epel-7]
1776438 NEW CVE-2019-16220 wordpress: validation and sanitization of a URL in wp_validate_redirect in wp-includes/pluggable.php could lead to an open redirect [epel-7]
1776439 NEW CVE-2019-16220 wordpress: validation and sanitization of a URL in wp_validate_redirect in wp-includes/pluggable.php could lead to an open redirect [epel-7]
2027155 NEW CVE-2021-44223 wordpress: remote code execution via a supply-chain attack [epel-7]
2064211 NEW CVE-2022-23395 wordpress: WordPress 5.9.2 security and maintenance release [epel-7]
2180261 NEW CVE-2022-3590 wordpress: WordPress is affected by an unauthenticated blind SSRF in the pingback feature. [epel-7]

Install Failures