28 apr

[Global] Critical cross-site scripting vulnerability detected in WordPress [Update]

Time: April 28, 2015 10:00:00 (CEST)
Dear LeaseWeb Customer,

We would like to inform you about a critical cross-site scripting vulnerability detected in WordPress open-source blogging tool and content management system (CMS).

This vulnerability could allow an attacker to send a comment long enough to force the backend MySQL database to truncate what is stored.

We strongly advice you to push the latest update (WordPress 4.2.1) if you are running an older WordPress version.

For more information on this bug, please refer to the following website: https://wordpress.org/news/2015/04/wordpress-4-2-1/