WordPress Vulnerabilities
WordPress 5.4 to 5.8 - Lodash Library Update
Description
On September 9, 2021 WordPress version 5.8.1 was released fixing three vulnerabilities.
The official blog post states:
"The Lodash library has been updated to version 4.17.21 in each branch to incorporate upstream security fixes."
The Lodash changelog states that a command injection vulnerability was recently patched. See references.
Affects WordPress
References
Classification
Type
INJECTION
OWASP top 10
CVSS
Miscellaneous
Verified
No
WPVDB ID
Timeline
Publicly Published
2021-09-09 (about 4 years ago)
Added
2021-09-09 (about 4 years ago)
Last Updated
2022-05-19 (about 3 years ago)