Cross-Site Scripting Vulnerability in WPGlobus Plugin for WordPress
CVE-2018-5367
What is CVE-2018-5367?
The WPGlobus plugin version 1.9.6 for WordPress is susceptible to a cross-site scripting (XSS) vulnerability. This flaw stems from improper validation of user input, specifically through the 'wpglobus_option[post_type][post]' parameter when processing requests to 'wp-admin/options.php'. Attackers can exploit this vulnerability by injecting malicious scripts that may be executed within the context of the user’s browser. It is advisable for website administrators to review their installations and apply necessary security patches to mitigate potential risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved