Your submission was sent successfully! Close

CVE-2022-21664

Published: 6 January 2022

WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. Due to lack of proper sanitization in one of the classes, there's potential for unintended SQL queries to be executed. This has been patched in WordPress version 5.8.3. Older affected versions are also fixed via security release, that go back till 4.1.34. We strongly recommend that you keep auto-updates enabled. There are no known workarounds for this issue.

Priority

Medium

CVSS 3 base score: 8.8

Status

Package Release Status
wordpress
Launchpad, Ubuntu, Debian
bionic Needs triage

focal Needs triage

hirsute Ignored
(reached end-of-life)
impish Needs triage

jammy Not vulnerable
(5.8.3+dfsg1-1ubuntu1)
trusty Ignored
(out of standard support)
upstream
Released (5.8.3+dfsg1-1)
xenial Ignored
(out of standard support)