CVE-2016-4566 | Plupload up to 2.1.8 on WordPress plupload.flash.swf cross site scripting (News 37382 / Nessus ID 91027)

A vulnerability was found in Plupload up to 2.1.8 on WordPress and classified as problematic. This issue affects some unknown processing of the file plupload.flash.swf. The manipulation leads to cross site scripting.

The identification of this vulnerability is CVE-2016-4566. The attack may be initiated remotely. There is no exploit available.

It is recommended to upgrade the affected component.

CVE-2016-4566 | Plupload up to 2.1.8 on WordPress plupload.flash.swf cross site scripting (News 37382 / Nessus ID 91027)