Related Vulnerabilities: CVE-2017-5490  

A cross-site scripting (XSS) vulnerability has been discovered in wordpress via theme name fallback.

Severity High

Remote Yes

Type Cross-site scripting

Description

A cross-site scripting (XSS) vulnerability has been discovered in wordpress via theme name fallback.

AVG-142 wordpress 4.7-1 4.7.1-1 High Fixed FS#52555

15 Jan 2017 ASA-201701-22 AVG-142 wordpress High multiple issues

https://github.com/WordPress/WordPress/commit/ce7fb2934dd111e6353784852de8aea2a938b359