[Git][security-tracker-team/security-tracker][master] Add references to commit and information for CVE-2019-9787/wordpress

Salvatore Bonaccorso carnil at debian.org
Thu Mar 14 20:17:04 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
20624c51 by Salvatore Bonaccorso at 2019-03-14T20:16:30Z
Add references to commit and information for CVE-2019-9787/wordpress

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -90,6 +90,8 @@ CVE-2018-20801 (In js/parts/SvgRenderer.js in Highcharts JS before 6.1.0, the us
 	TODO: check
 CVE-2019-9787 [XSS security hole in comments]
 	- wordpress 5.1.1+dfsg1-1 (bug #924546)
+	NOTE: https://blog.ripstech.com/2019/wordpress-csrf-to-rce/
+	NOTE: Fixed by: https://github.com/WordPress/WordPress/commit/0292de60ec78c5a44956765189403654fe4d080b
 CVE-2019-9779 (An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a ...)
 	- libredwg <itp> (bug #595191)
 CVE-2019-9778 (An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/20624c51a78f25e3bf25d44f8dada59c2b4ab6d6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/20624c51a78f25e3bf25d44f8dada59c2b4ab6d6
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190314/fc823e52/attachment.html>


More information about the debian-security-tracker-commits mailing list