Debian 9909 Published by

A wordpress security update has been released for Debian GNU/Linux 8 Extended LTS to address several vulnerabilities.



ELA-539-1 wordpress security update

Package wordpress
Version 4.1.34+dfsg-0+deb8u1
Related CVEs CVE-2022-21661 CVE-2022-21662 CVE-2022-21663 CVE-2022-21664

Several vulnerabilities were discovered in Wordpress, a web blogging tool. They allowed remote attackers to perform SQL injection, run unchecked SQL queries, bypass hardening, or perform Cross-Site Scripting (XSS) attacks.

For Debian 8 jessie, these problems have been fixed in version 4.1.34+dfsg-0+deb8u1.

We recommend that you upgrade your wordpress packages.

Further information about Extended LTS security advisories can be found at: https://deb.freexian.com/extended-lts/

  ELA-539-1 wordpress security update