Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

WordPress 'wpautop' Function Cross-Site Scripting (XSS) in WordPress

MINI-wj3v-5f62-x5mr
Summary

A security weakness in WordPress's 'wpautop' function can allow hackers to inject malicious code into websites. This could lead to unauthorized actions, such as stealing sensitive information or spreading malware. Website owners should update WordPress to the latest version to fix this issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
Ecosystem VendorProductAffected versions
MinimOS neo4j-2026.01 All versions
MinimOS neo4j-2026.01-docker-publish All versions
Original title
MINI-wj3v-5f62-x5mr
Published: 14 Apr 2026 · Updated: 14 Apr 2026 · First seen: 14 Apr 2026